CVE-2018-6498 - CVE House
Back to Database
Status published High CVE-2018-6498

Micro Focus Container Deployment Foundation (CDF), Remote Code Execution

Vulnerability Description

Remote Code Execution in the following products Hybrid Cloud Management Containerized Suite HCM2017.11, HCM2018.02, HCM2018.05, Operations Bridge Containerized Suite 2017.11, 2018.02, 2018.05, Data Center Automation Containerized Suite 2017.01 until 2018.05, Service Management Automation Suite 2017.11, 2018.02, 2018.05 and Network Operations Management (NOM) Suite CDF 2017.11, 2018.02, 2018.05 will allow Remote Code Execution.

Impact Analysis

Refer to official advisory for detailed impact metrics.

Remediation

Ensure systems are updated to the latest vendor-supplied patch levels.

THREAT MONITOR

Am I Vulnerable?

Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2018-6498

Credits & Attribution

No credits recorded in the NVD database.

Affected Vendor

Micro Focus

View all reports →

Affected Software

Network Operations Management (NOM) Suite CDF, Service Management Automation Suite, Data Center Automation Containerized Suite, Operations Bridge Containerized Suite, Hybrid Cloud Management Containerized Suite
Vulnerable Versions:
2017.11, 2018.02, 2018.05, 2017.01 until 2018.05, HCM2017.11, HCM2018.02, HCM2018.05

Timeline

Official Publish: August 30th, 2018
Last Modified: September 17th, 2024
Added to House: July 20th, 2026

CVSS Vectors

V3: CVSS:3.0/AV:A/AC:L/PR:N/UI:N/S:C/C:L/I:L/A:H

Weaknesses (CWE)

No CWE data available

MITRE ATT&CK TTPs

No associated TTPs found for this vulnerability.