Critical severity9.1NVD Advisory· Published Aug 11, 2020· Updated Jun 17, 2026
CVE-2020-14324
CVE-2020-14324
Description
A high severity vulnerability was found in all active versions of Red Hat CloudForms before 5.11.7.0. The out of band OS command injection vulnerability can be exploited by authenticated attacker while setuping conversion host through Infrastructure Migration Solution. This flaw allows attacker to execute arbitrary commands on CloudForms server.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- cpe:2.3:a:redhat:cloudforms_management_engine:*:*:*:*:*:*:*:*Range: <5.11.7.0
<5.11.7.0+ 1 more
- (no CPE)range: <5.11.7.0
- (no CPE)range: cfme 5.11.7.0
Patches
Vulnerability mechanics
References
2- access.redhat.com/security/cve/cve-2020-14324nvdVendor Advisory
- bugzilla.redhat.com/show_bug.cginvdIssue TrackingVendor Advisory
News mentions
0No linked articles in our index yet.