Vulnerability Details CVE-2014-3642
vmdb/app/controllers/application_controller/performance.rb in Red Hat CloudForms 3.1 Management Engine (CFME) before 5.3 allows remote authenticated users to gain privileges via unspecified vectors, related to an "insecure send method."
Exploit prediction scoring system (EPSS) score
EPSS Score 0.004
EPSS Ranking 59.3%
CVSS Severity
CVSS v2 Score 6.5
Products affected by CVE-2014-3642
-
cpe:2.3:a:redhat:cloudforms_3.0.1_management_engine:5.2.1
-
cpe:2.3:a:redhat:cloudforms_3.0.2_management_engine:5.2.2
-
cpe:2.3:a:redhat:cloudforms_3.0.3_management_engine:5.2.3
-
cpe:2.3:a:redhat:cloudforms_3.0.4_management_engine:5.2.4
-
cpe:2.3:a:redhat:cloudforms_3.0.5_management_engine:*
-
cpe:2.3:a:redhat:cloudforms_3.0_management_engine:5.2