Files
CVEs-PoC/2018/CVE-2018-1666.md
T
2024-05-26 14:27:05 +02:00

19 lines
788 B
Markdown

### [CVE-2018-1666](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-1666)
![](https://img.shields.io/static/v1?label=Product&message=DataPower%20Gateway&color=blue)
![](https://img.shields.io/static/v1?label=Version&message=n%2Fa&color=blue)
![](https://img.shields.io/static/v1?label=Vulnerability&message=Other&color=brighgreen)
### Description
IBM DataPower Gateway 2018.4.1.0, 7.6.0.0 through 7.6.0.11, 7.5.2.0 through 7.5.2.18, 7.5.1.0 through 7.5.1.18, 7.5.0.0 through 7.5.0.19, and 7.7.0.0 through 7.7.1.3 could allow an authenticated user to inject arbitrary messages that would be displayed on the UI. IBM X-Force ID: 144892.
### POC
#### Reference
No PoCs from references.
#### Github
- https://github.com/20142995/sectool
- https://github.com/ARPSyndicate/cvemon