Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2018-10917

pulp 2.16.x and possibly older is vulnerable to an improper path parsing. A malicious user or a malicious iso feed repository can write to locations accessible to the 'apache' user. This may lead to overwrite of published content on other iso repositories.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.004
EPSS Ranking 56.6%
CVSS Severity
CVSS v3 Score 6.8
CVSS v2 Score 4.0
Products affected by CVE-2018-10917


Contact Us

Shodan ® - All rights reserved