EUVD-2019-0375
There is a File Content Disclosure vulnerability in Action View <5.2.2.1, <5.1.6.2, <5.0.7.2, <4.2.11.1 and v3 where specially crafted accept headers can cause contents of arbitrary files on the target system's filesystem to be exposed.
- EUVD state
- Present in the current official mapping
- Known exploitation
- Recorded by ENISA since 7 Jul 2025. Evidence sources: cisa_kev.
- ENISA score
- 7.5 · CVSS 3.1
- Advisory evidence
- 49 linked advisory records
Only statements that explicitly mention a fix, patch, update, workaround or mitigation are shown here.
- csaf_redhat · RHSA-2019:0796Red Hat Security Advisory: CloudForms 4.7.3 security, bug fix and enhancement update
- csaf_opensuse · openSUSE-SU-2019:1344-1Security update for rubygem-actionpack-5_1
- csaf_redhat · RHSA-2019:1149Red Hat Security Advisory: rh-ror42-rubygem-actionpack security update
- csaf_suse · SUSE-SU-2019:0915-1Security update for rubygem-actionpack-4_2
- csaf_redhat · RHSA-2019:1289Red Hat Security Advisory: CloudForms 4.6.9 security, bug fix and enhancement update
- csaf_redhat · RHSA-2019:1147Red Hat Security Advisory: rh-ror50-rubygem-actionpack security update
- csaf_opensuse · openSUSE-SU-2020:1993-1Security update for rmt-server
- csaf_opensuse · openSUSE-SU-2020:2000-1Security update for rmt-server
- csaf_suse · SUSE-SU-2020:3036-1Security update for rmt-server
- csaf_suse · SUSE-SU-2020:3147-1Security update for rmt-server
- csaf_suse · SUSE-SU-2020:3160-1Security update for rmt-server
