← Back to CVE List

CVE-2016-8639

Published: 2018-08-01T13:29Z
Last Modified: 2024-11-21T02:59Z
Source: MITRE CVE List
License: MITRE-CVE-TOS
It was found that foreman before 1.13.0 is vulnerable to a stored XSS via an organization or location name. This could allow an attacker with privileges to set the organization or location name to display arbitrary HTML including scripting code within the web interface. > MITRE Terms of Use apply – see LICENSE‑MITRE.txt