VYPR
Medium severity6.5NVD Advisory· Published Apr 5, 2018· Updated Jun 17, 2026

CVE-2018-1096

CVE-2018-1096

Description

An input sanitization flaw was found in the id field in the dashboard controller of Foreman before 1.16.1. A user could use this flaw to perform an SQL injection attack on the back end database.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

4
  • Theforeman/Foremanllm-create2 versions
    <1.16.1+ 1 more
    • (no CPE)range: <1.16.1
    • cpe:2.3:a:theforeman:foreman:*:*:*:*:*:*:*:*range: <1.16.1
  • cpe:2.3:a:redhat:satellite:6.4:*:*:*:*:*:*:*
  • Foreman Project/Foremanv5
    Range: before 1.16.1

Patches

Vulnerability mechanics

References

3

News mentions

0

No linked articles in our index yet.