CVE ID | CVE-2018-6491 |
CVSS SCORE | 7.2, AV:L/AC:L/Au:N/C:C/I:C/A:C |
AFFECTED VENDORS |
Hewlett Packard Enterprise |
AFFECTED PRODUCTS |
Universal CMDB |
VULNERABILITY DETAILS |
The specific flaw exists within an access control set with insufficient privileges during the installation of the product. An attacker can leverage this vulnerability to execute arbitrary code under the context of SYSTEM. |
ADDITIONAL DETAILS |
Hewlett Packard Enterprise has issued an update to correct this vulnerability. More details can be found at:
https://softwaresupport.hpe.com/document/-/facetsearch/document/KM03141180 |
DISCLOSURE TIMELINE |
|
CREDIT | TrendyTofu - Trend Micro Zero Day Initiative |