PT-2018-15032 · Oracle · Mysql Server

Paradisecongo

·

Published

2018-11-29

·

Updated

2020-06-02

·

CVE-2018-19654

CVSS v3.1

7.5

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N
Name of the Vulnerable Software and Affected Versions Sales & Company Management System (SCMS) versions prior to 2018-06-06
Description The issue arises from a discrepancy in username checking between two components, one performing string validation and the other querying a MySQL database. This discrepancy allows for the registration of a new account with a duplicate username, as shown by using the test%c2 string when a test account already exists.
Recommendations For Sales & Company Management System (SCMS) versions prior to 2018-06-06, consider implementing additional validation to ensure username uniqueness before allowing new account registrations. As a temporary workaround, restrict access to the account registration feature to minimize the risk of exploitation.

Exploit

Fix

RCE

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2018-19654

Affected Products

Mysql Server