6.5
CVSSv2

CVE-2018-15481

Published: 21/08/2018 Updated: 03/10/2019
CVSS v2 Base Score: 6.5 | Impact Score: 6.4 | Exploitability Score: 8
CVSS v3 Base Score: 8.8 | Impact Score: 5.9 | Exploitability Score: 2.8
VMScore: 578
Vector: AV:N/AC:L/Au:S/C:P/I:P/A:P

Vulnerability Summary

Improper input sanitization within the restricted administration shell on UCOPIA Wireless Appliance devices using firmware version 5.1.x prior to 5.1.13 allows authenticated remote malicious users to escape the shell and escalate their privileges by adding a LocalCommand to the SSH configuration file in the user home folder.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

ucopia wireless_appliance_firmware