CVE-2018-17431: Critical severity comodo unified threat management firewall vulnerability
Published Jan 29, 2019
·Updated
Web Console in Comodo UTM Firewall before 2.7.0 allows remote attackers to execute arbitrary code without authentication via a crafted URL.
Affected Software
1 affected component
Comodo Unified Threat Management Firewall<2.7.0
Event History
Jan 29, 2019
CVE Published
via MITRE·11:00 PM
Data Sourced
via MITRE·11:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2018-17431?
CVE-2018-17431 has been classified as a high severity vulnerability due to its potential for remote code execution.
2
How do I fix CVE-2018-17431?
To mitigate CVE-2018-17431, upgrade Comodo UTM Firewall to version 2.7.0 or later.
3
Who is affected by CVE-2018-17431?
CVE-2018-17431 affects all versions of Comodo Unified Threat Management Firewall prior to 2.7.0.
4
What can attackers do with CVE-2018-17431?
Attackers can execute arbitrary code without authentication via a specially crafted URL due to CVE-2018-17431.
5
Is CVE-2018-17431 specific to certain configurations of Comodo UTM Firewall?
CVE-2018-17431 is not specific to certain configurations; it affects all instances of the software below version 2.7.0.