#VU10579 Buffer overflow in CloudMe - CVE-2018-6892
Published: February 15, 2018 / Updated: June 17, 2021
CloudMe
CloudMe
Description
The vulnerability exists due to improper bounds checking by the Sync client application. A remote attacker can connect to the “CloudMe Sync” client application listening on port 8888, send a malicious payload, trigger memory corruption and execute arbitrary code with elevated privileges.
Successful exploitation of this vulnerability may result in complete compromise of vulnerable system.