smart_proxy_dynflow: Authentication bypass in Foreman remote execution feature
Published Sep 21, 2018
9.8
CRITICALCVSS 3.0
EPSS 6.06%
Description
An authentication bypass flaw was found in the smart_proxy_dynflow component used by Foreman. A malicious attacker can use this flaw to remotely execute arbitrary commands on machines managed by vulnerable Foreman instances, in a highly privileged context.
Affected products
- Vendor n/a Product Smart Proxy Dynflow Defaultn/a
Default status is the baseline for the product, each version can override it (e.g. patched versions marked unaffected).
| Vendor | Product | Default status | Versions | |||
|---|---|---|---|---|---|---|
| n/a | Smart Proxy Dynflow | n/a |
|
- n/a
No data.
Red Hat Satellite 6.3 for RHEL 7
rubygem-smart_proxy_dynflow-0:0.1.10.2-1.el7sat
Fixed · RHSA-2018:2733
Red Hat Satellite 6.3 for RHEL 7
rubygem-smart_proxy_dynflow-0:0.1.10.2-1.el7sat
Fixed · RHSA-2018:2733
Red Hat Satellite 6
tfm-rubygem-smart_proxy_dynflow_core
Not affected
| Product | Package | State | Advisory |
|---|---|---|---|
| Red Hat Satellite 6.3 for RHEL 7 | rubygem-smart_proxy_dynflow-0:0.1.10.2-1.el7sat | Fixed | RHSA-2018:2733 |
| Red Hat Satellite 6.3 for RHEL 7 | rubygem-smart_proxy_dynflow-0:0.1.10.2-1.el7sat | Fixed | RHSA-2018:2733 |
| Red Hat Satellite 6 | tfm-rubygem-smart_proxy_dynflow_core | Not affected | n/a |
No package ranges for this CVE.
Remediation
Red Hat mitigation
Disable Smart Proxy Dynflow by setting the :enabled: option to false in the /etc/foreman-proxy/settings.d/dynflow.yml file.
Metrics
No CVSS v4.0 score for this CVE.
No CVSS v3.1 score for this CVE.
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
AV:N/AC:L/Au:N/C:C/I:C/A:C
This CVE is not in the KEV list.
No CISA SSVC assessment for this CVE yet.
Estimated probability of exploitation in the wild in the next 30 days (FIRST EPSS). As of Oct 1, 2026.
Score over time
2021–2026- EPSS v1
- EPSS v2
- EPSS v3
- EPSS v4
- EPSS v5
Percentile over time
- EPSS v1
- EPSS v2
- EPSS v3
- EPSS v4
- EPSS v5
Table of values (25 key points)
Flat stretches are collapsed; showing up to 120 newest points.
| Date | Score | Percentile | Model |
|---|---|---|---|
| Oct 1, 2026 | 6.06% (0.06056) | 93.16th | v5 (v2026.06.15) |
| Jun 15, 2026 | 6.01% (0.06007) | 92.37th | v5 (v2026.06.15) |
| Mar 30, 2025 | 9.10% (0.09103) | 91.88th | v4 (v2025.03.14) |
| Mar 29, 2025 | 13.15% (0.13145) | 90.17th | v4 (v2025.03.14) |
| Mar 19, 2025 | 9.10% (0.09103) | 91.64th | v4 (v2025.03.14) |
| Mar 17, 2025 | 7.10% (0.07099) | 90.87th | v4 (v2025.03.14) |
| Dec 12, 2024 | 0.28% (0.00277) | 69.08th | v3 (v2023.03.01) |
| Jul 6, 2024 | 0.28% (0.00279) | 68.51th | v3 (v2023.03.01) |
| May 10, 2024 | 0.40% (0.00395) | 73.31th | v3 (v2023.03.01) |
| Mar 23, 2024 | 0.56% (0.00561) | 77.20th | v3 (v2023.03.01) |
| Feb 12, 2024 | 0.52% (0.00522) | 76.19th | v3 (v2023.03.01) |
| Oct 20, 2023 | 0.93% (0.00931) | 81.26th | v3 (v2023.03.01) |
| Sep 15, 2023 | 0.92% (0.00919) | 81.02th | v3 (v2023.03.01) |
| Jul 8, 2023 | 1.21% (0.01209) | 83.37th | v3 (v2023.03.01) |
| Mar 7, 2023 | 0.86% (0.00859) | 79.75th | v3 (v2023.03.01) |
| Mar 6, 2023 | 1.02% (0.01018) | 40.69th | v2 (v2022.01.01) |
| Feb 13, 2023 | 1.02% (0.01018) | 40.16th | v2 (v2022.01.01) |
| Feb 3, 2023 | 1.11% (0.01108) | 54.42th | v2 (v2022.01.01) |
| Sep 10, 2022 | 1.02% (0.01018) | 38.88th | v2 (v2022.01.01) |
| Apr 1, 2022 | 1.02% (0.01018) | 36.86th | v2 (v2022.01.01) |
| Feb 4, 2022 | 1.02% (0.01018) | 19.50th | v2 (v2022.01.01) |
| Feb 3, 2022 | 1.82% (0.01819) | 35.19th | v1 |
| Jan 6, 2022 | 1.82% (0.01819) | 34.49th | v1 |
| Sep 1, 2021 | 1.82% (0.01819) | 74.60th | v1 |
| Apr 14, 2021 | 1.82% (0.01819) | 0.00th | v1 |
References (10)
- http://www.securityfocus.com/bid/105375 vdb-entryx_refsource_BIDThird Party AdvisoryVDB Entry
- https://access.redhat.com/errata/RHSA-2018:2733 vendor-advisoryx_refsource_REDHATThird Party Advisory
- https://access.redhat.com/security/cve/CVE-2018-14643 Vendor Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=1629063 Issue Tracking
- https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2018-14643 x_refsource_CONFIRMIssue TrackingPatchThird Party Advisory
- https://github.com/advisories/GHSA-gx5g-xcxj-cx2w Advisory
- https://github.com/rubysec/ruby-advisory-db/blob/master/gems/smart_proxy_dynflow/CVE-2018-14643.yml
- https://github.com/theforeman/smart_proxy_dynflow/pull/54 x_refsource_CONFIRMThird Party Advisory
- https://nvd.nist.gov/vuln/detail/CVE-2018-14643
- https://www.cve.org/CVERecord?id=CVE-2018-14643
| Link | Providers | Tags |
|---|---|---|
| http://www.securityfocus.com/bid/105375 | vdb-entryx_refsource_BIDThird Party AdvisoryVDB Entry | |
| https://access.redhat.com/errata/RHSA-2018:2733 | vendor-advisoryx_refsource_REDHATThird Party Advisory | |
| https://access.redhat.com/security/cve/CVE-2018-14643 | Vendor Advisory | |
| https://bugzilla.redhat.com/show_bug.cgi?id=1629063 | Issue Tracking | |
| https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2018-14643 | x_refsource_CONFIRMIssue TrackingPatchThird Party Advisory | |
| https://github.com/advisories/GHSA-gx5g-xcxj-cx2w | Advisory | |
| https://github.com/rubysec/ruby-advisory-db/blob/master/gems/smart_proxy_dynflow/CVE-2018-14643.yml | ||
| https://github.com/theforeman/smart_proxy_dynflow/pull/54 | x_refsource_CONFIRMThird Party Advisory | |
| https://nvd.nist.gov/vuln/detail/CVE-2018-14643 | ||
| https://www.cve.org/CVERecord?id=CVE-2018-14643 |
Change history (0)
No recorded changes yet.