Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:37433
HistoryOct 07, 2022 - 5:11 a.m.

Remote Code Execution (RCE)

2022-10-0705:11:04
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
12
foreman
vulnerability
remote code execution
authenticated attacker
sendmail
command injection

0.006 Low

EPSS

Percentile

79.2%

foreman is vulnerable to remote code execution. An authenticated attacker could use Sendmail configuration options to overwrite the defaults and perform command injection.

0.006 Low

EPSS

Percentile

79.2%