CVE-2018-18406
Last modified
CVE-2018-18406 is a vulnerability of currently unknown severity. An issue was discovered in Tufin SecureTrack 18.1 with TufinOS 2.16 build 1179(Final). The Audit Report module is affected by a blind XXE vulnerability when a new Best Practices Report is saved using a special payload inside the xml input field. EPSS estimates a 2.03% chance of exploitation in the next 30 days.
Description
An issue was discovered in Tufin SecureTrack 18.1 with TufinOS 2.16 build 1179(Final). The Audit Report module is affected by a blind XXE vulnerability when a new Best Practices Report is saved using a special payload inside the xml input field. The XXE vulnerability is blind since the response doesn't directly display a requested file, but rather returns it inside the name data field when the report is saved. An attacker is able to view restricted operating system files. This issue affects all types of users: administrators or normal users.
Metrics
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Tufin | Securetrack | 18.1 |
References
- https://forum.tufin.com/support/kc/latest/Vendor Advisory
- https://www.exploit-db.com/exploits/45808Exploit, Third Party Advisory, VDB Entry
- https://www.tufin.com/Vendor Advisory
- https://forum.tufin.com/support/kc/latest/Vendor Advisory
- https://www.exploit-db.com/exploits/45808Exploit, Third Party Advisory, VDB Entry
- https://www.tufin.com/Vendor Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2018-18406?
How severe is CVE-2018-18406?
How do I fix CVE-2018-18406?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2018
- CVE-2018-18396Remote Code Execution in Moxa ThingsPro IIoT Gateway and Dev…
- CVE-2018-18397The userfaultfd implementation in the Linux kernel before 4.…
- CVE-2018-18398Xfce Thunar 1.6.15, when Xfce 4.12 is used, mishandles the I…
- CVE-2018-18399SQL injection vulnerability in the "ContentPlaceHolder1_uxTi…
- CVE-2018-1840IBM WebSphere Application Server 8.5 and 9.0 could allow a r…6
- CVE-2018-18405jQuery v2.2.2 allows XSS via a crafted onerror attribute of …6.1
- CVE-2018-18407A heap-based buffer over-read was discovered in the tcprepla…
- CVE-2018-18408A use-after-free was discovered in the tcpbridge binary of T…
- CVE-2018-18409A stack-based buffer over-read exists in setbit() at iptree.…
- CVE-2018-1841IBM Cloud Private 2.1.0 could allow a local user to obtain t…6.2
- CVE-2018-18416LANGO Codeigniter Multilingual Script 1.0 has XSS in the inp…
- CVE-2018-18417In the 3.1 version of Ekushey Project Manager CRM, Stored XS…
Are you affected by CVE-2018-18406?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
