Medium severity4.3NVD Advisory· Published Sep 10, 2018· Updated Jun 17, 2026
CVE-2016-7077
CVE-2016-7077
Description
foreman before 1.14.0 is vulnerable to an information leak. It was found that Foreman form helper does not authorize options for associated objects. Unauthorized user can see names of such objects if their count is less than 6.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3cpe:2.3:a:theforeman:foreman:*:*:*:*:*:*:*:*+ 2 more
- cpe:2.3:a:theforeman:foreman:*:*:*:*:*:*:*:*range: <1.14.0
- (no CPE)range: <1.14.0
- (no CPE)range: foreman 1.14.0
Patches
Vulnerability mechanics
References
4- projects.theforeman.org/issues/16971nvdExploitVendor Advisory
- www.securityfocus.com/bid/94230nvdThird Party AdvisoryVDB Entry
- bugzilla.redhat.com/show_bug.cginvdIssue TrackingThird Party Advisory
- theforeman.org/security.htmlnvdVendor Advisory
News mentions
0No linked articles in our index yet.