VYPR
High severity7.8NVD Advisory· Published Nov 1, 2017· Updated Jun 17, 2026

CVE-2017-15918

CVE-2017-15918

Description

Sera 1.2 stores the user's login password in plain text in their home directory. This makes privilege escalation trivial and also exposes the user and system keychains to local attacks.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

3
  • Ignitum/Sera2 versions
    cpe:2.3:a:ignitum:sera:1.2:*:*:*:*:iphone_os:*:*+ 1 more
    • cpe:2.3:a:ignitum:sera:1.2:*:*:*:*:iphone_os:*:*
    • cpe:2.3:a:ignitum:sera:1.2:*:*:*:*:mac_os_x:*:*
  • Sera/Serallm-fuzzy
    Range: <1.2

Patches

Vulnerability mechanics

References

2

News mentions

0

No linked articles in our index yet.