Vulnerability Details CVE-2012-5477
The smart proxy in Foreman before 1.1 uses a umask set to 0, which allows local users to modify files created by the daemon via unspecified vectors.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.0
EPSS Ranking 15.3%
CVSS Severity
CVSS v2 Score 3.6
Products affected by CVE-2012-5477
-
cpe:2.3:a:theforeman:foreman:-
-
cpe:2.3:a:theforeman:foreman:0.1
-
cpe:2.3:a:theforeman:foreman:0.2
-
cpe:2.3:a:theforeman:foreman:0.3
-
cpe:2.3:a:theforeman:foreman:0.4
-
cpe:2.3:a:theforeman:foreman:0.4.1
-
cpe:2.3:a:theforeman:foreman:0.4.2
-
cpe:2.3:a:theforeman:foreman:1.0