Headline
CVE-2022-0860: Improper Authorization in cobbler
Improper Authorization in GitHub repository cobbler/cobbler prior to 3.3.2.
Bounties 124
Related news
Ubuntu Security Notice USN-6475-1
Ubuntu Security Notice 6475-1 - It was discovered that Cobbler did not properly handle user input, which could result in an absolute path traversal. An attacker could possibly use this issue to read arbitrary files. It was discovered that Cobbler did not properly handle user input, which could result in command injection. An attacker could possibly use this issue to execute arbitrary code with high privileges.