Acccheck Project maintains acccheck.pl, a Perl-based password-audit utility for Active Directory environments. The observed vulnerability profile centers on OS command injection in the script's command-construction logic, reflecting risks inherent to shell-based tooling where user input or configuration values flow into system calls. Current severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Acccheck Project over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2018-12268CRITICAL acccheck.pl in acccheck 0.2.1 allows Command Injection via shell metacharacters in a username or password file, as demonstrated by injection into an smbclient command line. | Jun 13, 2018 | 9.8 | 28 | NO | NO |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Acccheck Project.
Media articles that mention a CVE ID that affects a product developed by Acccheck Project — matched by CVE ID, not by vendor name.