FlawAtlas
Search the atlas
CVE-2023-0462 High

Arbitrary code execution through yaml global parameters

An arbitrary code execution flaw was found in Foreman. This issue may allow an admin user to execute arbitrary code on the underlying operating system by setting global parameters with a YAML payload.

Exploit probability 1.0%
Published September 20, 2023
Required by Not available
Last source change August 12, 2026

02 / AFFECTED SOFTWARE

Affected packages

Unknown Unknown

31 explicit affected versions

04 / EVIDENCE

Source records

Open Source Vulnerabilities CVE-2023-0462

An arbitrary code execution flaw was found in Foreman. This issue may allow an admin user to execute arbitrary code on the underlying operating system by setting global parameters with a YAML payload.

View original source

05 / REFERENCES

Further evidence