cisco hyperflex-hx-data-platform CVE-2018-15407 is a vulnerability in Cisco Hyperflex Hx Data Platform
Published on October 5, 2018

Cisco HyperFlex World-Readable Sensitive Information Vulnerability
A vulnerability in the installation process of Cisco HyperFlex Software could allow an authenticated, local attacker to read sensitive information. The vulnerability is due to insufficient cleanup of installation files. An attacker could exploit this vulnerability by accessing the residual installation files on an affected system. A successful exploit could allow the attacker to collect sensitive information regarding the configuration of the system.

Vendor Advisory NVD

Weakness Type

What is an Information Disclosure Vulnerability?

The product exposes sensitive information to an actor that is not explicitly authorized to have access to that information.

CVE-2018-15407 has been classified to as an Information Disclosure vulnerability or weakness.


Products Associated with CVE-2018-15407

Want to know whenever a new CVE is published for Cisco Hyperflex Hx Data Platform? stack.watch will email you.

 

Affected Versions

Cisco HyperFlex HX-Series Version n/a is affected by CVE-2018-15407

Exploit Probability

EPSS
0.06%
Percentile
18.82%

EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.