CVE-2018-1185
23Vexday Risk Score
No sign of exploitation. It has a public proof of concept.
ssvc Attendepss 6.3%
from disclosure to weapon97 days
Published on NVDFeb 3
1st PoC+97d
exploitation probability
6.3%top 7% of all CVEs
observed exploitation
nono source reports it
2 public exploit(s)
An issue was discovered in EMC RecoverPoint for Virtual Machines versions prior to 5.1.1, EMC RecoverPoint version 5.1.0.0, and EMC RecoverPoint versions prior to 5.0.1.3. Command injection vulnerability in Admin CLI may allow a malicious user with admin privileges to escape from the restricted shell to an interactive shell and run arbitrary commands with root privileges.
Affected products
n/a · EMC RecoverPoint for Virtual Machines versions prior to 5.1.1, EMC RecoverPoint version 5.1.0.0, EMC RecoverPoint versions prior to 5.0.1.3public PoCs found — 2
cve_referencewww.exploit-db.com/exploits/44614/unverifiedexploitdbwww.exploit-db.com/exploits/44614unverified⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.