CVE-2016-8613
foreman: Stored XSS vulnerability in remote execution plugin
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
A flaw was found in foreman 1.5.1. The remote execution plugin runs commands on hosts over SSH from the Foreman web UI. When a job is submitted that contains HTML tags, the console output shown in the web UI does not escape the output causing any HTML or JavaScript to run in the user's browser. The output of the job is stored, making this a stored XSS vulnerability.
Se ha descubierto un problema en Foreman 1.5.1. El plugin de ejecución remota ejecuta comanfos en hosts por SSH desde la interfaz de usuario web de Foreman. Cuando se envía un job que contiene etiquetas HTML, la salida de la consola mostrada en la interfaz web no escapa la salida, lo que hace que se ejecute HTML o JavaScript en el navegador del usuario. La salida del trabajo está almacenada, lo que hace quee sta sea una vulnerabilidad de Cross-Site Scripting (XSS) persistente.
CVSS Scores
SSVC
- Decision:-
Timeline
- 2016-10-12 CVE Reserved
- 2018-07-31 CVE Published
- 2024-07-10 EPSS Updated
- 2024-08-06 CVE Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CAPEC
References (6)
URL | Tag | Source |
---|---|---|
http://www.securityfocus.com/bid/93859 | Third Party Advisory | |
https://github.com/theforeman/foreman_remote_execution/pull/208 | Third Party Advisory |
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2016-8613 | 2023-02-12 |
URL | Date | SRC |
---|---|---|
https://projects.theforeman.org/issues/17066 | 2023-02-12 | |
https://access.redhat.com/security/cve/CVE-2016-8613 | 2018-02-21 | |
https://bugzilla.redhat.com/show_bug.cgi?id=1387232 | 2018-02-21 |
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Theforeman Search vendor "Theforeman" | Foreman Search vendor "Theforeman" for product "Foreman" | 1.5.1 Search vendor "Theforeman" for product "Foreman" and version "1.5.1" | - |
Affected
|