Vulnerability Details CVE-2018-16494
In VOS and overly permissive "umask" may allow for authorized users of the server to gain unauthorized access through insecure file permissions that can result in an arbitrary read, write, or execution of newly created files and directories. Insecure umask setting was present throughout the Versa servers.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.008
EPSS Ranking 73.5%
CVSS Severity
CVSS v3 Score 8.8
CVSS v2 Score 6.5
Products affected by CVE-2018-16494
-
cpe:2.3:o:versa-networks:versa_operating_system:-
-
cpe:2.3:o:versa-networks:versa_operating_system:20.2.0
-
cpe:2.3:o:versa-networks:versa_operating_system:21.1.0