CVE-2018-7739 EXPLOIT
9.8
CRITICAL · CVSS 3.0 · EPSS 53.2% (pctl 99)
Patch early
A public exploit exists.
Description
antsle antman before 0.9.1a allows remote attackers to bypass authentication via invalid characters in the username and password parameters, as demonstrated by a username=>&password=%0a string to the /login URI. This allows obtaining root permissions within the web management console, because the login process uses Java's ProcessBuilder class and a bash script called antsle-auth with insufficient input validation.
Scoring
| CVSS | 9.8 (CRITICAL, v3.0) |
|---|---|
| Vector | CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H |
| EPSS | 53.23% — more likely to be exploited than 99% of all CVEs |
| Weakness | CWE-20 |
| On CISA KEV | no |
| Public exploit | yes |
| Published | 2018-03-07 |
| Last modified | 2026-06-17 |
Affected (1)
| Vendor | Product |
|---|---|
| antsle | antman |
Public exploits
| Source | Title | Date |
|---|---|---|
| exploit-db | antMan 0.9.0c - Authentication Bypass | 2018-03-07 |
| exploit-db | antMan < 0.9.1a - Authentication Bypass | 2018-03-02 |
References
- http://blog.codecatoctin.com/2018/02/antman-authentication-bypass.html
- https://www.exploit-db.com/exploits/44220/
- https://www.exploit-db.com/exploits/44262/
- http://blog.codecatoctin.com/2018/02/antman-authentication-bypass.html
- https://www.exploit-db.com/exploits/44220/
- https://www.exploit-db.com/exploits/44262/
→ the Explorer · watch your stack · NVD