CVE-2017-18365
45Vexday Risk Score
Patch now. It exploitation observed by VulnCheck and has a working public exploit.
ssvc Actepss 21%
from disclosure to weapon0 days
Published on NVDMar 28
metasploitMar 15
VulnCheck+2419d
exploitation probability
21%top 3% of all CVEs
observed exploitation
yesVulnCheck
The Management Console in GitHub Enterprise 2.8.x before 2.8.7 has a deserialization issue that allows unauthenticated remote attackers to execute arbitrary code. This occurs because the enterprise session secret is always the same, and can be found in the product's source code. By sending a crafted cookie signed with this secret, one can call Marshal.load with arbitrary data, which is a problem because the Marshal data format allows Ruby objects.
Affected products
n/a · n/a