CVE-2018-17283

Unauthenticated 'oputilsServlet' vulnerability

 

Vulnerability Details
ImpactCVSS V3 rating: 10 (Critical)
Reported6 August 2018
Fixed7 September 2018
Affected BuildsTill Build 123194
Fixed inBuild 123196
OverviewThe 'oputilsServlet' which was previously unauthenticated has now been removed.
Recommended FixUpgrade to OpUtils Version 12.3.329 or above.

 

Description

The 'oputilsServlet' vulnerability was discovered in OpUtils before version 12.3.196. This unauthenticated 'oputilsServlet' vulnerability was removed since it compromises the application.

We recommend that you upgrade to OpUtils version 12.3.329 and above to fix this issue.

Source and Acknowledgements

Find out more about CVE-2018-17283 from the CVE dictionary.

Need Help?

For clarification or corrections please contact our support team or email us at oputils-support@manageengine.com