CVE-2018-1630

CVSS v3 Score
8.2
High
CVSS v2 Score
7.2
High

Vulnerability Description

IBM Informix Dynamic Server Enterprise Edition 12.1 could allow a local user logged in with database administrator user to gain root privileges through a symbolic link vulnerability in onmode. IBM X-Force ID: 144430.

CVSS:8.2(High)

ikiwiki before 3.20110608 allows remote attackers to hijack root's tty and run symlink attacks.

CWE-592011
CVSS:8.2(High)

IBM Informix Dynamic Server Enterprise Edition 12.1 could allow a local user logged in with database administrator user to gain root privileges through a symbolic link vulnerability in oninit mongohas...

CWE-592018
CVSS:8.2(High)

IBM Informix Dynamic Server Enterprise Edition 12.1 could allow a local user logged in with database administrator user to gain root privileges through a symbolic link vulnerability in .infxdirs. IBM ...

CWE-592018
CVSS:8.2(High)

IBM Informix Dynamic Server Enterprise Edition 12.1 could allow a local user logged in with database administrator user to gain root privileges through a symbolic link vulnerability in onsrvapd. IBM X...

CWE-592018
CVSS:8.2(High)

IBM Informix Dynamic Server Enterprise Edition 12.1 could allow a local user logged in with database administrator user to gain root privileges through a symbolic link vulnerability in infos.DBSERVERN...

CWE-592018
CVSS:8.2(High)

Wings is Pterodactyl's server control plane. This vulnerability can be used to delete files and directories recursively on the host system. This vulnerability can be combined with `GHSA-p8r3-83r8-jwj5...

CWE-592023