CVE-2012-5646: Red Hat Openshift

High severity, CVSS 7.5. EPSS: 2.2% chance of exploitation in the next 30 days.

node-util/www/html/restorer.php in the Red Hat OpenShift Origin before 1.0.5-3 allows remote attackers to execute arbitrary commands via a crafted uuid in the PATH_INFO.

Affected products

  • Red Hat Openshift: version 1.0 only
  • Red Hat Openshift Origin: up to and including 1.0.5

Published 2013-02-24. Last modified 2026-06-16.