CVE-2018-6892
CRITICALEPSS 100th pctlDescription
An issue was discovered in CloudMe before 1.11.0. An unauthenticated remote attacker that can connect to the "CloudMe Sync" client application listening on port 8888 can send a malicious payload causing a buffer overflow condition. This will result in an attacker controlling the program's execution flow and allowing arbitrary code execution.
CVSS v3 Vector
Exploitability
Impact
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Exploit Intelligence
Very high risk: more likely to be exploited than 100% of all known CVEs.
References
- http://hyp3rlinx.altervista.org/advisories/CLOUDME-SYNC-UNAUTHENTICATED-REMOTE-BUFFER-OVERFLOW.txt
- http://packetstormsecurity.com/files/157407/CloudMe-1.11.2-Buffer-Overflow.html
- http://packetstormsecurity.com/files/158716/CloudMe-1.11.2-SEH-Buffer-Overflow.html
- http://packetstormsecurity.com/files/159327/CloudMe-1.11.2-Buffer-Overflow.html
- https://blogs.securiteam.com/index.php/archives/3669
- https://www.exploit-db.com/exploits/44027/
- https://www.exploit-db.com/exploits/44175/
- https://www.exploit-db.com/exploits/45197/
- https://www.exploit-db.com/exploits/46250/
- https://www.exploit-db.com/exploits/48840
Find and fix vulnerabilities across your fleet
TridentStack Control continuously scans your Windows, macOS, and Linux fleet for known vulnerabilities, prioritizes them by severity and active exploitation, and patches them automatically.
Start freeThis product uses NVD data but is not endorsed or certified by the NVD. EPSS scores courtesy of FIRST.org (https://www.first.org/epss). Source: CISA KEV Catalog. Data as of 2024-11-21.