CVE-2018-6892
An unauthenticated remote attacker that can connect to the "CloudMe Sync" client application listening on port 8888 can send a malicious payload causing a buffer overflow condition.
Does this matter?
EPSS puts the probability of exploitation in the next 30 days at 93.4%, higher than 100% of all known CVEs. Patch or mitigate before the next change window.
Description
An issue was discovered in CloudMe before 1.11.0. An unauthenticated remote attacker that can connect to the "CloudMe Sync" client application listening on port 8888 can send a malicious payload causing a buffer overflow condition. This will result in an attacker controlling the program's execution flow and allowing arbitrary code execution.
- CVSS 3.0
- 9.8 CRITICALCVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
- EPSS
- 93.39% probability · 100th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-119
- Affected
- cloudme/sync
- Source
- cve@mitre.org
References
- http://hyp3rlinx.altervista.org/advisories/CLOUDME-SYNC-UNAUTHENTICATED-REMOTE-BUFFER-OVERFLOW.txtExploit, Third Party Advisory
- http://packetstormsecurity.com/files/157407/CloudMe-1.11.2-Buffer-Overflow.html
- http://packetstormsecurity.com/files/158716/CloudMe-1.11.2-SEH-Buffer-Overflow.html
- http://packetstormsecurity.com/files/159327/CloudMe-1.11.2-Buffer-Overflow.html
- https://blogs.securiteam.com/index.php/archives/3669Exploit, Third Party Advisory
- https://www.exploit-db.com/exploits/44027/Exploit, Third Party Advisory, VDB Entry
- https://www.exploit-db.com/exploits/44175/Exploit, Third Party Advisory, VDB Entry
- https://www.exploit-db.com/exploits/45197/Exploit, Third Party Advisory, VDB Entry
- https://www.exploit-db.com/exploits/46250/Exploit, Third Party Advisory, VDB Entry
- https://www.exploit-db.com/exploits/48840
- http://hyp3rlinx.altervista.org/advisories/CLOUDME-SYNC-UNAUTHENTICATED-REMOTE-BUFFER-OVERFLOW.txtExploit, Third Party Advisory
- http://packetstormsecurity.com/files/157407/CloudMe-1.11.2-Buffer-Overflow.html
- http://packetstormsecurity.com/files/158716/CloudMe-1.11.2-SEH-Buffer-Overflow.html
- http://packetstormsecurity.com/files/159327/CloudMe-1.11.2-Buffer-Overflow.html
- https://blogs.securiteam.com/index.php/archives/3669Exploit, Third Party Advisory
- https://www.exploit-db.com/exploits/44027/Exploit, Third Party Advisory, VDB Entry
- https://www.exploit-db.com/exploits/44175/Exploit, Third Party Advisory, VDB Entry
- https://www.exploit-db.com/exploits/45197/Exploit, Third Party Advisory, VDB Entry
- https://www.exploit-db.com/exploits/46250/Exploit, Third Party Advisory, VDB Entry
- https://www.exploit-db.com/exploits/48840
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.