CVE-2023-0462
An arbitrary code execution flaw was found in Foreman. This issue may allow an admin user to execute arbitrary code on the underlying operating system by setting global parameters with a YAML payload.
- Theforeman Foreman
- < 3.8.0
- CVSS 3.1
- 9.1 CRITICAL
- EPSS
- 1.0% (58th percentile)
- Weakness
- CWE-94
- NVD status
- Modified
- Published
- 2023-09-20
CVE-2023-0462 at NVD
No indexed exploits for CVE-2023-0462 yet
Our index is partial: it proves presence, never absence
No exploit for CVE-2023-0462 has been indexed yet. Our index is built from live traffic and upstream syncs, so this page can only say what it knows — not that no exploit exists.