CVE-2018-16097 Vulnerability Details

  /     /     /  

CVE-2018-16097 Metadata Quick Info

CVE Published: 30/11/2018 | CVE Updated: 05/08/2024 | CVE Year: 2018
Source: lenovo | Vendor: Lenovo | Product: LXCI for VMware
Status : PUBLISHED

CVE-2018-16097 Description

LXCI for VMware versions prior to 5.5 and LXCI for Microsoft System Center versions prior to 3.5, allow an authenticated user to write to any system file due to insufficient sanitization during the upload of a certificate.

Metrics

CVSS Version: 3.1 | Base Score: n/a
Vector: n/a

l➤ Exploitability Metrics:
    Attack Vector (AV)*
    Attack Complexity (AC)*
    Privileges Required (PR)*
    User Interaction (UI)*
    Scope (S)*

l➤ Impact Metrics:
    Confidentiality Impact (C)*
    Integrity Impact (I)*
    Availability Impact (A)*

Weakness Enumeration (CWE)

CWE-ID:
CWE Name: file system modification
Source: Lenovo

Common Attack Pattern Enumeration and Classification (CAPEC)

CAPEC-ID:
CAPEC Description:


Source: NVD (National Vulnerability Database).