Vulnerabilities (CVE)

Join the Common Vulnerabilities and Exposures (CVE) community and start to get notified about new vulnerabilities.

Filtered by vendor Redhat Subscribe
Filtered by product Cloudforms 3.1 Management Engine
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2014-7814 1 Redhat 1 Cloudforms 3.1 Management Engine 2023-02-12 6.5 MEDIUM N/A
SQL injection vulnerability in Red Hat CloudForms 3.1 Management Engine (CFME) 5.3 allows remote authenticated users to execute arbitrary SQL commands via a crafted REST API request to an SQL filter.
CVE-2014-3692 1 Redhat 1 Cloudforms 3.1 Management Engine 2023-02-12 10.0 HIGH N/A
The customization template in Red Hat CloudForms 3.1 Management Engine (CFME) 5.3 uses a default password for the root account when a password is not specified for a new image, which allows remote attackers to gain privileges.