Foreman是Foreman开源的一套用于物理和虚拟服务器中的生命周期管理工具。该工具提供服务开通、配置管理以及报告状态等功能。 Foreman存在安全漏洞,该漏洞源于WebSocket代理实现中的命令注入,当系统使用来自计算资源提供商的未清理主机名值构建shell命令时,攻击者通过操作恶意计算资源服务器,在用户访问VM VNC控制台功能时可能在Foreman服务器上实现远程代码执行,从而可能导致敏感凭据和整个托管基础设施被破解。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Red Hat | Red Hat Satellite 6 | any |
affected |
| Red Hat | Red Hat Satellite 6.16 for RHEL 8 | 0:3.12.0.14-1.el8sat< * |
unaffected |
| Red Hat | Red Hat Satellite 6.16 for RHEL 9 | 0:3.12.0.14-1.el9sat< * |
unaffected |
| Red Hat | Red Hat Satellite 6.17 for RHEL 9 | 0:3.14.0.14-1.el9sat< * |
unaffected |
0:0.1.23-0.3.el9pc< * |
unaffected | ||
0:1.2.0-0.1.el9pc< * |
unaffected | ||
0:4.2.28-0.1.el9pc< * |
unaffected | ||
0:2.22.3-1.el9pc< * |
unaffected | ||
0:3.27.10-2.el9pc< * |
unaffected | ||
0:1.5.1-1.el9sat< * |
unaffected | ||
0:0.4.3-1.el9sat< * |
unaffected | ||
| … +16 more rows | |||
| Red Hat | Red Hat Satellite 6.18 for RHEL 9 | 0:3.16.0.12-1.el9sat< * |
unaffected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Red Hat | Red Hat Satellite 6.16 for RHEL 8 | 0:3.12.0.14-1.el8sat ~ * |
cpe:/a:redhat:satellite:6.16::el8
|
|
| Red Hat | Red Hat Satellite 6.16 for RHEL 9 | 0:3.12.0.14-1.el9sat ~ * |
cpe:/a:redhat:satellite:6.16::el8
|
|
| Red Hat | Red Hat Satellite 6.17 for RHEL 9 | 0:3.14.0.14-1.el9sat ~ * |
cpe:/a:redhat:satellite:6.17::el9
|
|
| Red Hat | Red Hat Satellite 6.17 for RHEL 9 | 0:0.1.23-0.3.el9pc ~ * |
cpe:/a:redhat:satellite:6.17::el9
|
|
| Red Hat | Red Hat Satellite 6.17 for RHEL 9 | 0:1.2.0-0.1.el9pc ~ * |
cpe:/a:redhat:satellite:6.17::el9
|
|
| Red Hat | Red Hat Satellite 6.17 for RHEL 9 | 0:4.2.28-0.1.el9pc ~ * |
cpe:/a:redhat:satellite:6.17::el9
|
|
| Red Hat | Red Hat Satellite 6.17 for RHEL 9 | 0:2.22.3-1.el9pc ~ * |
cpe:/a:redhat:satellite:6.17::el9
|
|
| Red Hat | Red Hat Satellite 6.17 for RHEL 9 | 0:3.27.10-2.el9pc ~ * |
cpe:/a:redhat:satellite:6.17::el9
|
|
| Red Hat | Red Hat Satellite 6.17 for RHEL 9 | 0:1.5.1-1.el9sat ~ * |
cpe:/a:redhat:satellite:6.17::el9
|
|
| Red Hat | Red Hat Satellite 6.17 for RHEL 9 | 0:0.4.3-1.el9sat ~ * |
cpe:/a:redhat:satellite:6.17::el9
|
|
| Red Hat | Red Hat Satellite 6.17 for RHEL 9 | 0:4.16.0.14-1.el9sat ~ * |
cpe:/a:redhat:satellite:6.17::el9
|
|
| Red Hat | Red Hat Satellite 6.17 for RHEL 9 | 0:0.13.0-1.el9sat ~ * |
cpe:/a:redhat:satellite:6.17::el9
|
|
| Red Hat | Red Hat Satellite 6.17 for RHEL 9 | 0:6.17.7-1.el9sat ~ * |
cpe:/a:redhat:satellite:6.17::el9
|
|
| Red Hat | Red Hat Satellite 6.17 for RHEL 9 | 0:0.0.3-4.el9sat ~ * |
cpe:/a:redhat:satellite:6.17::el9
|
|
| Red Hat | Red Hat Satellite 6.17 for RHEL 9 | 0:3.14.0.14-1.el9sat ~ * |
cpe:/a:redhat:satellite:6.17::el9
|
|
| Red Hat | Red Hat Satellite 6.17 for RHEL 9 | 0:0.1.23-0.3.el9pc ~ * |
cpe:/a:redhat:satellite:6.17::el9
|
|
| Red Hat | Red Hat Satellite 6.17 for RHEL 9 | 0:1.2.0-0.1.el9pc ~ * |
cpe:/a:redhat:satellite:6.17::el9
|
|
| Red Hat | Red Hat Satellite 6.17 for RHEL 9 | 0:4.2.28-0.1.el9pc ~ * |
cpe:/a:redhat:satellite:6.17::el9
|
|
| Red Hat | Red Hat Satellite 6.17 for RHEL 9 | 0:2.22.3-1.el9pc ~ * |
cpe:/a:redhat:satellite:6.17::el9
|
|
| Red Hat | Red Hat Satellite 6.17 for RHEL 9 | 0:3.27.10-2.el9pc ~ * |
cpe:/a:redhat:satellite:6.17::el9
|
|
| Red Hat | Red Hat Satellite 6.17 for RHEL 9 | 0:1.5.1-1.el9sat ~ * |
cpe:/a:redhat:satellite:6.17::el9
|
|
| Red Hat | Red Hat Satellite 6.17 for RHEL 9 | 0:0.4.3-1.el9sat ~ * |
cpe:/a:redhat:satellite:6.17::el9
|
|
| Red Hat | Red Hat Satellite 6.17 for RHEL 9 | 0:4.16.0.14-1.el9sat ~ * |
cpe:/a:redhat:satellite:6.17::el9
|
|
| Red Hat | Red Hat Satellite 6.17 for RHEL 9 | 0:0.13.0-1.el9sat ~ * |
cpe:/a:redhat:satellite:6.17::el9
|
|
| Red Hat | Red Hat Satellite 6.17 for RHEL 9 | 0:6.17.7-1.el9sat ~ * |
cpe:/a:redhat:satellite:6.17::el9
|
|
| Red Hat | Red Hat Satellite 6.17 for RHEL 9 | 0:0.0.3-4.el9sat ~ * |
cpe:/a:redhat:satellite:6.17::el9
|
|
| Red Hat | Red Hat Satellite 6.18 for RHEL 9 | 0:3.16.0.12-1.el9sat ~ * |
cpe:/a:redhat:satellite:6.18::el9
|
|
| Red Hat | Red Hat Satellite 6 | - |
cpe:/a:redhat:satellite:6
|
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2025-12805 | 8.1 HIGH | Llama-stack-k8s-operator: llama stack service exposed across namespaces due to missing net |
| CVE-2026-2436 | 6.5 MEDIUM | Libsoup: libsoup: denial of service via use-after-free in soupserver during tls handshake |
| CVE-2026-3121 | 6.5 MEDIUM | Keycloak: org.keycloak/keycloak-services: keycloak: privilege escalation via manage-client |
| CVE-2026-4887 | 6.1 MEDIUM | Gimp: gimp:memory disclosure and denial of service via specially crafted pcx image |
| CVE-2026-4897 | 5.5 MEDIUM | Polkit: polkit: denial of service via unbounded input processing through standard input |
| CVE-2026-2272 | 4.3 MEDIUM | Gimp: gimp: memory corruption due to integer overflow in ico file handling |
| CVE-2026-3190 | 4.3 MEDIUM | Keycloak: keycloak: information disclosure via improper role enforcement in uma 2.0 protec |
| CVE-2026-2271 | 3.3 LOW | Gimp: gimp: denial of service via crafted psp image file |
| CVE-2026-0968 | 3.1 LOW | Libssh: libssh: denial of service due to malformed sftp message |
| CVE-2026-4874 | 3.1 LOW | Org.keycloak.protocol.oidc.grants: org.keycloak.services.managers: keycloak: server-side r |
| CVE-2026-2239 | 2.8 LOW | Gimp: gimp: application crash (dos) via crafted psd file due to heap-buffer-overflow |
| CVE-2026-0965 | Libssh: libssh: denial of service via improper configuration file handling | |
| CVE-2026-0967 | Libssh: libssh: denial of service via inefficient regular expression processing | |
| CVE-2026-0964 | Libssh: improper sanitation of paths received from scp servers | |
| CVE-2026-0966 | Libssh: libssh: denial of service via zero-length input in ssh_get_hexa() |
No comments yet