VYPR
Medium severity5.5NVD Advisory· Published May 21, 2018· Updated Jun 17, 2026

CVE-2018-7268

CVE-2018-7268

Description

MagniComp SysInfo before 10-H81, as shipped with BMC BladeLogic Automation and other products, contains an information exposure vulnerability in which a local unprivileged user is able to read any root (uid 0) owned file on the system, regardless of the file permissions. Confidential information such as password hashes (/etc/shadow) or other secrets (such as log files or private keys) can be leaked to the attacker. The vulnerability has a confidentiality impact, but has no direct impact on system integrity or availability.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

2
  • Magnicomp/Sysinfo2 versions
    cpe:2.3:a:magnicomp:sysinfo:*:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:magnicomp:sysinfo:*:*:*:*:*:*:*:*range: <10-h81
    • (no CPE)range: <10-H81

Patches

Vulnerability mechanics

References

3

News mentions

0

No linked articles in our index yet.