Lucene search

K
osvGoogleOSV:GHSA-CPQF-3C3R-C9G2
HistoryOct 05, 2021 - 5:53 p.m.

Cobbler before 3.3.0 allows log poisoning

2021-10-0517:53:20
Google
osv.dev
11

0.037 Low

EPSS

Percentile

91.8%

Cobbler before 3.3.0 allows log poisoning, and resultant Remote Code Execution, via an XMLRPC method that logs to the logfile for template injection.