Unrated severityNVD Advisory· Published May 8, 2014· Updated May 6, 2026
CVE-2013-0210
CVE-2013-0210
Description
The smart proxy Puppet run API in Foreman before 1.2.0 allows remote attackers to execute arbitrary commands via vectors related to escaping and Puppet commands.
Affected products
6cpe:2.3:a:theforeman:foreman:*:*:*:*:*:*:*:*+ 5 more
- cpe:2.3:a:theforeman:foreman:*:*:*:*:*:*:*:*range: <=1.0
- cpe:2.3:a:theforeman:foreman:0.1:*:*:*:*:*:*:*
- cpe:2.3:a:theforeman:foreman:0.2:*:*:*:*:*:*:*
- cpe:2.3:a:theforeman:foreman:0.3:*:*:*:*:*:*:*
- cpe:2.3:a:theforeman:foreman:0.4:*:*:*:*:*:*:*
- cpe:2.3:a:theforeman:foreman:0.4.1:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
1- theforeman.org/security.htmlnvdVendor Advisory
News mentions
0No linked articles in our index yet.