← volver
CVE-2018-1112highCWE-287

CVE-2018-1112

21Vexday Risk Score

Sin señal de explotación. Ningún artefacto público de explotación conocido hasta ahora.

ssvc Trackcvss 8epss 2.4%
probabilidad de explotación
2.4%top 17% de las CVE
explotación observada
noninguna fuente lo reporta
glusterfs server before versions 3.10.12, 4.0.2 is vulnerable when using 'auth.allow' option which allows any unauthenticated gluster client to connect from any network to mount gluster storage volumes. NOTE: this vulnerability exists because of a CVE-2018-1088 regression.
CVSS:3.0/AV:A/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Productos afectados
unspecified · glusterfs