ZeroHour

CVE-2018-18254

PoC
CVSS 3.0
7.8 high
EPSS
<1%p32
Published
()
Modified
Description

An issue was discovered in CapMon Access Manager 5.4.1.1005. An unprivileged user can read the cal_whitelist table in the Custom App Launcher (CAL) database, and potentially gain privileges by placing a Trojan horse program at an app pathname.

Vendors
capmon
Products
access manager
Weakness
CWE-732
Vector
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.