High severity7.8NVD Advisory· Published Nov 1, 2017· Updated May 13, 2026
CVE-2017-15918
CVE-2017-15918
Description
Sera 1.2 stores the user's login password in plain text in their home directory. This makes privilege escalation trivial and also exposes the user and system keychains to local attacks.
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
2- m4.rkw.io/blog/cve201715918-sera-12-local-root-privesc-and-password-disclosure.htmlnvdExploitThird Party Advisory
- www.exploit-db.com/exploits/43221/nvdExploitThird Party AdvisoryVDB Entry
News mentions
0No linked articles in our index yet.