Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2018-10892

The default OCI linux spec in oci/defaults{_linux}.go in Docker/Moby from 1.11 to current does not block /proc/acpi pathnames. The flaw allows an attacker to modify host's hardware like enabling/disabling bluetooth or turning up/down keyboard brightness.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.002
EPSS Ranking 41.3%
CVSS Severity
CVSS v3 Score 6.3
CVSS v2 Score 5.0
Products affected by CVE-2018-10892


Contact Us

Shodan ® - All rights reserved