CVE-2018-10077 is an XML External Entity (XXE) vulnerability in Geist WatchDog Console version 3.2.2. This flaw allows remote authenticated administrators to read arbitrary files on the system by submitting specially crafted XML data. The vulnerability has a CVSS score of 4.9 (Medium), indicating a low attack complexity but requiring high privileges for exploitation, with a high impact on confidentiality. While not actively exploited in the wild (KEV: No), exploit code is publicly available via ExploitDB (EDB-44493). Despite the public exploit, there is minimal community discussion or media coverage surrounding this CVE. Its EPSS score suggests a relatively low probability of exploitation compared to other CVEs.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
3.2.2CPE matchmatch criteria | cpe:2.3:o:vertiv:watchdog_console:3.2.2:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.