CVE-2018-15481
8.8
Vector
CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Exploitability: 2.8 / Impact: 5.9
Source: NVD
Description
Improper input sanitization within the restricted administration shell on UCOPIA Wireless Appliance devices using firmware version 5.1.x before 5.1.13 allows authenticated remote attackers to escape the shell and escalate their privileges by adding a LocalCommand to the SSH configuration file in the user home folder.
Affected (1)
Products: Ucopia: Wireless Appliance Firmware
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| From 5.1.0 to 5.1.13 |
| Running on/with | Platform Versions |
|---|---|
Ucopia Wireless Appliance | All versions |
References (2)
Source: cve@mitre.org
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Timeline
No history available yet.