CVE-2018-1000666
GIG Technology NV JumpScale Portal 7 version before commit 15443122ed2b1cbfd7bdefc048bf106f075becdb contains a CWE-78: Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability in method:…
Does this matter?
High impact if exploited, but EPSS currently rates exploitation as unlikely (8.08%). Schedule it in the normal patch cycle and watch for a rise in EPSS or a public exploit.
Description
GIG Technology NV JumpScale Portal 7 version before commit 15443122ed2b1cbfd7bdefc048bf106f075becdb contains a CWE-78: Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability in method: notifySpaceModification; that can result in Improper validation of parameters results in command execution. This attack appear to be exploitable via Network connectivity, required minimal auth privileges (everyone can register an account). This vulnerability appears to have been fixed in After commit 15443122ed2b1cbfd7bdefc048bf106f075becdb.
- CVSS 3.0
- 9.8 CRITICALCVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
- EPSS
- 8.08% probability · 94th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-78
- Affected
- openvcloud project/openvcloud · gig/jumpscale
- Source
- cve@mitre.org
References
- https://github.com/0-complexity/openvcloud/issues/1207Exploit, Issue Tracking, Third Party Advisory
- https://github.com/jumpscale7/jumpscale_portal/blob/c997bb1824862b08246d60e34e950df06ebac68c/apps/portalbase/system/system__contentmanager/methodclass/system_contentmanager.py#L293-L315Exploit, Third Party Advisory
- https://github.com/jumpscale7/jumpscale_portal/pull/108Broken Link
- https://medium.com/%40vrico315/vulnerability-in-jumpscale-portal-7-a88098a1caca
- https://telegra.ph/Description-of-vulnerability-in-JumpScale-Portal-7-08-23Exploit, Third Party Advisory
- https://github.com/0-complexity/openvcloud/issues/1207Exploit, Issue Tracking, Third Party Advisory
- https://github.com/jumpscale7/jumpscale_portal/blob/c997bb1824862b08246d60e34e950df06ebac68c/apps/portalbase/system/system__contentmanager/methodclass/system_contentmanager.py#L293-L315Exploit, Third Party Advisory
- https://github.com/jumpscale7/jumpscale_portal/pull/108Broken Link
- https://medium.com/%40vrico315/vulnerability-in-jumpscale-portal-7-a88098a1caca
- https://telegra.ph/Description-of-vulnerability-in-JumpScale-Portal-7-08-23Exploit, Third Party Advisory
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.