Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2018-11196

EPSS 0.18% · P39
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2018-11196

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Description
Mahara 17.04 before 17.04.8 and 17.10 before 17.10.5 and 18.04 before 18.04.1 can be used as medium to transmit viruses by placing infected files into a Leap2A archive and uploading that to Mahara. In contrast to other ZIP files that are uploaded, ClamAV (when activated) does not check Leap2A archives for viruses, allowing malicious files to be available for download. While files cannot be executed on Mahara itself, Mahara can be used to transfer such files to user computers.
Source: NVD (National Vulnerability Database)
CVSS Information
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Type
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Title
Catalyst Mahara 安全漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
Catalyst Mahara是新西兰Catalyst IT公司的一套社交网络系统。该系统包含博客、履历表生成器、文件管理器等。 Catalyst Mahara 17.04.8之前的17.04版本、17.10.5之前的17.10版本和18.04.1之前18.04版本中存在安全漏洞。攻击者可利用该漏洞恶意的文件上传到Mahara。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

VendorProductAffected VersionsCPESubscribe
-n/a n/a -

II. Public POCs for CVE-2018-11196

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2018-11196

登录查看更多情报信息。

Same Patch Batch · n/a · 2018-06-01 · 80 CVEs total

CVE-2018-11162Quest DR Series Disk Backup软件操作系统命令注入漏洞
CVE-2018-11163Quest DR Series Disk Backup软件操作系统命令注入漏洞
CVE-2018-11177Quest DR Series Disk Backup软件操作系统命令注入漏洞
CVE-2018-11165Quest DR Series Disk Backup软件操作系统命令注入漏洞
CVE-2018-11166Quest DR Series Disk Backup软件操作系统命令注入漏洞
CVE-2018-11164Quest DR Series Disk Backup软件操作系统命令注入漏洞
CVE-2018-11161Quest DR Series Disk Backup软件操作系统命令注入漏洞
CVE-2018-11160Quest DR Series Disk Backup软件操作系统命令注入漏洞
CVE-2018-11159Quest DR Series Disk Backup软件操作系统命令注入漏洞
CVE-2018-11158Quest DR Series Disk Backup软件操作系统命令注入漏洞
CVE-2018-11167Quest DR Series Disk Backup软件操作系统命令注入漏洞
CVE-2018-11168Quest DR Series Disk Backup软件操作系统命令注入漏洞
CVE-2018-11169Quest DR Series Disk Backup软件操作系统命令注入漏洞
CVE-2018-11170Quest DR Series Disk Backup软件操作系统命令注入漏洞
CVE-2018-11171Quest DR Series Disk Backup软件操作系统命令注入漏洞
CVE-2018-11172Quest DR Series Disk Backup软件操作系统命令注入漏洞
CVE-2018-11173Quest DR Series Disk Backup软件操作系统命令注入漏洞
CVE-2018-11174Quest DR Series Disk Backup软件操作系统命令注入漏洞
CVE-2018-11175Quest DR Series Disk Backup软件操作系统命令注入漏洞
CVE-2018-11176Quest DR Series Disk Backup软件操作系统命令注入漏洞

Showing top 20 of 80 CVEs. View all on vendor page → →

IV. Related Vulnerabilities

V. Comments for CVE-2018-11196

No comments yet


Leave a comment