VYPR
Medium severity5.3NVD Advisory· Published Jul 18, 2018· Updated Jun 17, 2026

CVE-2018-2905

CVE-2018-2905

Description

Vulnerability in the Sun ZFS Storage Appliance Kit (AK) component of Oracle Sun Systems Products Suite (subcomponent: Core Services). The supported version that is affected is Prior to 8.7.20. Easily exploitable vulnerability allows unauthenticated attacker with network access via SSL/TLS to compromise Sun ZFS Storage Appliance Kit (AK). Successful attacks of this vulnerability can result in unauthorized read access to a subset of Sun ZFS Storage Appliance Kit (AK) accessible data. CVSS 3.0 Base Score 5.3 (Confidentiality impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N).

Affected products

3
  • cpe:2.3:a:oracle:sun_zfs_storage_appliance_kit:*:*:*:*:*:*:*:*+ 2 more
    • cpe:2.3:a:oracle:sun_zfs_storage_appliance_kit:*:*:*:*:*:*:*:*range: <8.7.20
    • (no CPE)range: <8.7.20
    • (no CPE)range: unspecified

Patches

Vulnerability mechanics

References

3

News mentions

0

No linked articles in our index yet.