CVE-2018-2624 is an easily exploitable vulnerability in the Sun ZFS Storage Appliance Kit (AK) User Interface, affecting versions prior to 8.7.13. This high-severity vulnerability (CVSS 8.6) allows unauthenticated attackers with network access via HTTP to gain complete access to all data accessible by the appliance. While not actively exploited in the wild and lacking public exploit code or significant community discussion, its potential for unauthorized access to critical data makes it a significant concern.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
< 8.7.13CPE matchmatch criteria | cpe:2.3:a:oracle:sun_zfs_storage_appliance_kit:*:*:*:*:*:*:*:* |
CVSS version used by this source: 3.0
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:N/A:N
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.1 Mastodon, and 0.4 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.