CVE-2018-1932
Description
IBM API Connect 5.0.0.0 through 5.0.8.4 is affected by a vulnerability in the role-based access control in the management server that could allow an authenticated user to obtain highly sensitive information. IBM X-Force ID: 153175.
- CVSS Version 3.0
- CVSS Version 2.0
nvd
CVE ID: CVE-2018-1932
Base Score: 4.9
Base Severity: MEDIUM
Vector String:CVSS:3.0/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N
us.ibm
CVE ID: CVE-2018-1932
Base Score: 4.9
Base Severity: MEDIUM
Vector String:CVSS:3.0/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N
nvd
CVE ID: CVE-2018-1932
Base Score: 4.0
Base Severity: MEDIUM
Vector String:AV:N/AC:L/Au:S/C:P/I:N/A:N
Proof Of Concept
BKreisel
Rust POC for CVE-2018-1932X kernel driver vulnerabilities
Refrence: GitHub
Content on GitHub
ASkyeye | watchers:19
CVE-2018-19320
Exploiting ring0 memcpy-like functionality to disable Driver Signing Enforcement (DSE)
Refrence: GitHub
hmnthabit | watchers:8
CVE-2018-19320-LPE
CVE-2018-19320 LPE Exploit
Refrence: GitHub
nanabingies | watchers:2
CVE-2018-19321
CVE-2018-19321
Refrence: GitHub