peter bassill · operator
$ cve CVE-2018-11066 JSON

CVE-2018-11066

9.8
CRITICAL · CVSS 3.0 · EPSS 9.9% (pctl 95)

In your normal cycle

Critical by CVSS (9.8), but no sign of active exploitation.

Description

Dell EMC Avamar Client Manager in Dell EMC Avamar Server versions 7.2.0, 7.2.1, 7.3.0, 7.3.1, 7.4.0, 7.4.1, 7.5.0, 7.5.1, 18.1 and Dell EMC Integrated Data Protection Appliance (IDPA) versions 2.0, 2.1 and 2.2 contain a Remote Code Execution vulnerability. A remote unauthenticated attacker could potentially exploit this vulnerability to execute arbitrary commands on the server.

Scoring

CVSS9.8 (CRITICAL, v3.0)
VectorCVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
EPSS9.91% — more likely to be exploited than 95% of all CVEs
On CISA KEVno
Public exploitnone known
Published2018-11-26
Last modified2026-06-17

Affected (3)

VendorProduct
dellemc avamar
dellemc integrated data protection appliance
vmwarevsphere data protection

References

→ the Explorer  ·  watch your stack  ·  NVD