CVE-2018-15380
published 2019-02-20CVE-2018-15380: A vulnerability in the cluster service manager of Cisco HyperFlex Software could allow an unauthenticated, adjacent attacker to execute commands as the root…
PriorityP350high8.8CVSS 3.0
AVAACLPRNUINSUCHIHAH
EPSS
1.13%
62.8th percentile
A vulnerability in the cluster service manager of Cisco HyperFlex Software could allow an unauthenticated, adjacent attacker to execute commands as the root user. The vulnerability is due to insufficient input validation. An attacker could exploit this vulnerability by connecting to the cluster service manager and injecting commands into the bound process. A successful exploit could allow the attacker to run commands on the affected host as the root user. This vulnerability affects Cisco HyperFlex Software releases prior to 3.5(2a).
Affected
4 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| cisco | cisco_hyperflex_hx-series | >= unspecified < 3.5(2a) | 3.5(2a) |
| cisco | hyperflex | — | — |
| cisco | hyperflex_hx_data_platform | — | — |
| cisco | hyperflex_hx_data_platform | — | — |
CVSS provenance
nvdv3.08.8HIGHCVSS:3.0/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
nvdv2.08.3HIGHAV:A/AC:L/Au:N/C:C/I:C/A:C
vendor_cisco8.8HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Cisco
Cisco HyperFlex Software Command Injection Vulnerability
vendor_cisco·2019-02-20·CVSS 8.8
CVE-2018-15380 [HIGH] CWE-78 Cisco HyperFlex Software Command Injection Vulnerability
Cisco HyperFlex Software Command Injection Vulnerability
A vulnerability in the cluster service manager of Cisco HyperFlex Software could allow an unauthenticated, adjacent attacker to execute commands as the root user.
The vulnerability is due to insufficient input validation. An attacker could exploit this vulnerability by connecting to the cluster service manager and injecting commands into the bound process. A successful exploit could allow the attacker to run commands on the affected host as the root user.
Cisco has released software updates that address this vulnerability. There are workarounds that address this vulnerability.
This advisory is available at the following link:
https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20190220-hyperflex-in
Cisco
Cisco HyperFlex Software Command Injection Vulnerability
vendor_cisco·CVSS 3.0
CVE-2018-15380 Cisco HyperFlex Software Command Injection Vulnerability
CVE-2018-15380: Cisco HyperFlex Software Command Injection Vulnerability
A vulnerability in the cluster service manager of Cisco HyperFlex Software could allow an unauthenticated, adjacent attacker to execute commands as the root user. The vulnerability is due to insufficient input validation. An attacker could exploit this vulnerability by connecting to the cluster service manager and injecting commands into the bound process. A successful exploit could allow the attacker to run commands on the affected host as the root user. Cisco has released software updates that address this vulnerability. There are
CVSS: 3.0
CWE: CWE-78, CWE-78
Bug IDs: CSCvj95606, CSCvq24176
GHSA
GHSA-39c5-pg2r-45hj: A vulnerability in the cluster service manager of Cisco HyperFlex Software could allow an unauthenticated, adjacent attacker to execute commands as th
ghsa_unreviewed·2022-05-13
CVE-2018-15380 [HIGH] CWE-78 GHSA-39c5-pg2r-45hj: A vulnerability in the cluster service manager of Cisco HyperFlex Software could allow an unauthenticated, adjacent attacker to execute commands as th
A vulnerability in the cluster service manager of Cisco HyperFlex Software could allow an unauthenticated, adjacent attacker to execute commands as the root user. The vulnerability is due to insufficient input validation. An attacker could exploit this vulnerability by connecting to the cluster service manager and injecting commands into the bound process. A successful exploit could allow the attacker to run commands on the affected host as the root user. This vulnerability affects Cisco HyperFlex Software releases prior to 3.5(2a).
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2019-02-20
Published