CVE-2018-15768
MEDIUMDell Openmanage Network Manager - Incorrect Permission Assignment
Title source: ruleDescription
Dell OpenManage Network Manager versions prior to 6.5.0 enabled read/write access to the file system for MySQL users due to insecure default configuration setting for the embedded MySQL database.
Exploits (1)
exploitdb
WORKING POC
VERIFIED
by KoreLogic · pythonwebappslinux
https://www.exploit-db.com/exploits/45852
References (3)
Scores
CVSS v3
6.5
EPSS
0.2340
EPSS Percentile
96.0%
Attack Vector
NETWORK
CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
Details
CWE
CWE-732
Status
published
Products (1)
dell/openmanage_network_manager
< 6.5.0
Published
Nov 30, 2018
Tracked Since
Feb 18, 2026