VendorsRed Hatcloudforms_3.1_management_engine5.3
Vulnerabilities

Red Hat RedHat CloudForms 3.1 Management Engine (CFME) 5.3

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

2CVEs
CVE-2014-3692
The customization template in Red Hat CloudForms 3.1 Management Engine (CFME) 5.3 uses a default password for the root account when a password is not specified for a new image, which allows remote attackers to gain privileges.
Published 2015-01-16 · Modified
10.0EPSS 0.029
CVE-2014-7814
SQL injection vulnerability in Red Hat CloudForms 3.1 Management Engine (CFME) 5.3 allows remote authenticated users to execute arbitrary SQL commands via a crafted REST API request to an SQL filter.
Published 2015-01-16 · Modified
6.5EPSS 0.014