CVE-2018-2664 is a critical vulnerability affecting the User Interface subcomponent of Oracle Sun ZFS Storage Appliance Kit (AK) versions prior to 8.7.13. This unauthenticated network vulnerability, accessible via HTTP, has a CVSS 3.0 score of 9.0, indicating severe impacts on confidentiality, integrity, and availability, potentially leading to a complete system takeover. Despite its high severity, the exploit complexity is high, and there is currently no evidence of active exploitation, public exploit code, or significant community discussion surrounding this CVE.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
< 8.7.13CPE matchmatch criteria | cpe:2.3:a:oracle:sun_zfs_storage_appliance_kit:*:*:*:*:*:*:*:* |
CVSS version used by this source: 3.0
CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:C/C:H/I:H/A:H
The average CVE in this peer group has 0.0 Twitter, 0.4 Reddit, 1.2 Bluesky, 0.9 Mastodon, and 2.3 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.8 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.