Skip to main content

CVE-2018-1932

Description

IBM API Connect 5.0.0.0 through 5.0.8.4 is affected by a vulnerability in the role-based access control in the management server that could allow an authenticated user to obtain highly sensitive information. IBM X-Force ID: 153175.

nvd
CVE ID: CVE-2018-1932
Base Score: 4.9
Base Severity: MEDIUM
Vector String:CVSS:3.0/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N
us.ibm
CVE ID: CVE-2018-1932
Base Score: 4.9
Base Severity: MEDIUM
Vector String:CVSS:3.0/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N

Proof Of Concept

BKreisel

Rust POC for CVE-2018-1932X kernel driver vulnerabilities

Refrence: GitHub

Content on GitHub

ASkyeye | watchers:19

CVE-2018-19320
Exploiting ring0 memcpy-like functionality to disable Driver Signing Enforcement (DSE)

Refrence: GitHub

hmnthabit | watchers:8

CVE-2018-19320-LPE
CVE-2018-19320 LPE Exploit

Refrence: GitHub

nanabingies | watchers:2

CVE-2018-19321
CVE-2018-19321

Refrence: GitHub

Refrence: NVDMITRE