← Vulnerability feed

Vulnerability record · CVE-2014-0007 · published 20 June 2014

CVE-2014-0007: Theforeman foreman vulnerability

Theforeman · Foreman

The Smart-Proxy in Foreman before 1.4.5 and 1.5.x before 1.5.1 allows remote attackers to execute arbitrary commands via shell metacharacters in the path parameter to tftp/fetch_boot_file.

7.5 CVSS 2.0 High EPSS 9.0% · top 4.9%
7.5CVSS 2.0 base score
9.0%EPSS exploitation probability, 30 days
NoNot in CISA KEV
1Affected product versions listed by NVD
4References
17 Jun 2026Last modified by NVD

Description

The Smart-Proxy in Foreman before 1.4.5 and 1.5.x before 1.5.1 allows remote attackers to execute arbitrary commands via shell metacharacters in the path parameter to tftp/fetch_boot_file.

AV:N/AC:L/Au:N/C:P/I:P/A:P

Affected products

1 vulnerable configurations from NVD's CPE data, grouped by vendor and product.

References

Track CVE-2014-0007 inside VULONE

Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.

Start free Open in platform

Related vulnerabilities

Same products first, then exploited flaws of the same weakness class.

9.8CVE-2018-14643Theforeman foreman improper authentication vulnerabilityAn authentication bypass flaw was found in the smart_proxy_dynflow component used by Foreman. A malicious attacker can use this flaw to remotely exec…EPSS 6.1%9.1CVE-2022-3874Redhat satellite os command injection vulnerabilityA command injection flaw was found in foreman. This flaw allows an authenticated user with admin privileges on the foreman instance to transpile comm…EPSS 2.2%9.1CVE-2023-0118Theforeman foreman os command injection vulnerabilityAn arbitrary code execution flaw was found in Foreman. This flaw allows an admin user to bypass safe mode in templates and execute arbitrary code on …EPSS 1.4%9.1CVE-2023-0462Theforeman foreman code injection vulnerabilityAn arbitrary code execution flaw was found in Foreman. This issue may allow an admin user to execute arbitrary code on the underlying operating syste…EPSS 0.96%8.8CVE-2026-5136Redhat satellite vulnerabilityA flaw was found in Foreman. The Usergroup model in Foreman does not properly validate role assignments against the calling user's permissions. This …EPSS 0.56%8.8CVE-2021-3590Theforeman foreman information exposure vulnerabilityA flaw was found in Foreman project. A credential leak was identified which will expose Azure Compute Profile password through JSON of the API output…EPSS 0.67%8.8CVE-2017-2672Theforeman foreman cleartext storage of sensitive data vulnerabilityA flaw was found in foreman before version 1.15 in the logging of adding and registering images. An attacker with access to the foreman log file woul…EPSS 1.2%8.8CVE-2016-9593Theforeman foreman insufficiently protected credentials vulnerabilityforeman-debug before version 1.15.0 is vulnerable to a flaw in foreman-debug's logging. An attacker with access to the foreman log file would be able…EPSS 0.97%

Source: NIST National Vulnerability Database (record CVE-2014-0007), CISA KEV, FIRST EPSS (scores of 2026-09-26). This page is refreshed as NVD updates the record.