2024-05-26 14:27:05 +02:00
### [CVE-2013-2049](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2013-2049)

2025-09-29 21:09:30 +02:00


2024-05-26 14:27:05 +02:00
### Description
Red Hat CloudForms 2 Management Engine (CFME) allows remote attackers to conduct session tampering attacks by leveraging use of a static secret_token.rb secret.
### POC
#### Reference
No PoCs from references.
#### Github
- https://github.com/rcvalle/vulnerabilities