CVEInsight.
TrendingZero-DayExploreBrowseSearchSaved
CVEInsight.

Free vulnerability intelligence for developers, security teams, and researchers. Data sourced from public databases for informational purposes only.

Explore

HomeTrendingZero-Day WatchAttack TypesBrowse CVEsSearch

Legal

Privacy PolicyTerms of ServiceData Disclaimer

© 2026CVEInsight. For informational use only — not a substitute for professional security advice.

CVE data sourced from NVD / NIST & public disclosures.

theforeman

hammer_cli

2 known vulnerabilities · sorted by CVSS score

CVE-2017-2667
HIGH8.1

Hammer CLI, a CLI utility for Foreman, before version 0.10.0, did not explicitly set the verify_ssl flag for apipie-bindings that disable it by default. As a result the server certificates are not checked and connections are prone to man-in-the-middle attacks.

theforeman / hammer_cli+2
Network
Published Mar 12, 2018
CVE-2014-0241
MEDIUM5.5

rubygem-hammer_cli_foreman: File /etc/hammer/cli.modules.d/foreman.yml world readable

theforeman / hammer_cli+1
Local
Published Dec 13, 2019