Improper Control of Generation of Code (‘Code Injection’)
Discription

Cobbler before 3.3.0 allows log poisoning, and resultant Remote Code Execution, via an XMLRPC method that logs to the logfile for template injection.Read More

Back to Main

Subscribe for the latest news: