Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2018-6892

An issue was discovered in CloudMe before 1.11.0. An unauthenticated remote attacker that can connect to the "CloudMe Sync" client application listening on port 8888 can send a malicious payload causing a buffer overflow condition. This will result in an attacker controlling the program's execution flow and allowing arbitrary code execution.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.909
EPSS Ranking 99.6%
CVSS Severity
CVSS v3 Score 9.8
CVSS v2 Score 7.5
References
Products affected by CVE-2018-6892
  • Cloudme » Sync » Version: 1.10.9
    cpe:2.3:a:cloudme:sync:1.10.9


Contact Us

Shodan ® - All rights reserved