Description
A flaw was found in cobbler software component version 2.6.11-1. It suffers from an invalid parameter validation vulnerability, leading the arbitrary file reading. The flaw is triggered by navigating to a vulnerable URL via cobbler-web on a default installation.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-2448 | A flaw was found in cobbler software component version 2.6.11-1. It suffers from an invalid parameter validation vulnerability, leading the arbitrary file reading. The flaw is triggered by navigating to a vulnerable URL via cobbler-web on a default installation. |
Github GHSA |
GHSA-4vc9-4xpq-77vm | Cobbler Arbitrary File Read |
References
| Link | Providers |
|---|---|
| https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2016-9605 |
|
History
No history.
Status: PUBLISHED
Assigner: redhat
Published:
Updated: 2024-08-06T02:59:02.710Z
Reserved: 2016-11-23T00:00:00.000Z
Link: CVE-2016-9605
No data.
Status : Modified
Published: 2018-08-22T21:29:00.227
Modified: 2024-11-21T03:01:29.990
Link: CVE-2016-9605
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD
Github GHSA