CVE-2018-6488

HIGH

Microfocus Ucmdb Configuration Manager - Code Injection

Title source: rule
STIX 2.1

Description

Arbitrary Code Execution vulnerability in Micro Focus Universal CMDB, version 4.10, 4.11, 4.12. This vulnerability could be remotely exploited to allow Arbitrary Code Execution.

References (1)

Core 1

Scores

CVSS v3 8.1
EPSS 0.0066
EPSS Percentile 71.5%
Attack Vector NETWORK
CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H

Details

CWE
CWE-94
Status published
Products (3)
microfocus/ucmdb_configuration_manager 4.10
microfocus/ucmdb_configuration_manager 4.11
microfocus/ucmdb_configuration_manager 4.12
Published Feb 22, 2018
Tracked Since Feb 18, 2026