ID:6266 - Exploit for Privilege escalation in EMC Isilon OneFS - CVE-2018-1204

 
Main Vulnerability Database Exploits ID:6266 - Exploit for Privilege escalation in EMC Isilon OneFS - CVE-2018-1204

ID:6266 - Exploit for Privilege escalation in EMC Isilon OneFS - CVE-2018-1204

Published: June 17, 2021


Vulnerability identifier: #VU10589
Vulnerability risk: High
CVE-ID: CVE-2018-1204
CWE-ID: CWE-22
Exploitation vector: Remote access
Vulnerable software:
EMC Isilon OneFS

Link to public exploit:


Vulnerability description

The vulnerability allows a remote attacker to gain elevated privileges on the target system.

The weakness exists due to a path traversal when reading the script file to run. A remote attacker can use remote support scripts to execute arbitrary python code with root privileges.


Remediation

Install update from vendor's website.