CVE-2018-2754 is a high-severity vulnerability affecting the ZVNET Driver subcomponent of Oracle Solaris 11.3. An unauthenticated attacker with local logon access can easily exploit this to achieve unauthorized modification or deletion of critical data, or cause a complete denial of service (system crash). The CVSS 3.0 score is 7.7, indicating high integrity and availability impacts with a local attack vector and low attack complexity. There is currently no public exploit code available (Metasploit, Nuclei, ExploitDB), and no evidence of active exploitation or significant community discussion.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
11.3CPE matchmatch criteria | cpe:2.3:o:oracle:solaris:11.3:*:*:*:*:*:*:* |
CVSS version used by this source: 3.0
CVSS:3.0/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:H
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.5 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.