Lucene search

K
cvelistApacheCVELIST:CVE-2018-11756
HistoryJul 20, 2018 - 12:00 a.m.

CVE-2018-11756

2018-07-2000:00:00
apache
www.cve.org

9.5 High

AI Score

Confidence

High

0.003 Low

EPSS

Percentile

66.2%

In PHP Runtime for Apache OpenWhisk, a Docker action inheriting one of the Docker tags openwhisk/action-php-v7.2:1.0.0 or openwhisk/action-php-v7.1:1.0.1 (or earlier) may allow an attacker to replace the user function inside the container if the user code is vulnerable to code exploitation.

CNA Affected

[
  {
    "product": "PHP Runtime for Apache OpenWhisk",
    "vendor": "Apache Software Foundation",
    "versions": [
      {
        "status": "affected",
        "version": "Docker tag openwhisk/action-php-v7.2 1.0.0"
      },
      {
        "status": "affected",
        "version": "openwhisk/action-php-v7.1 1.0.0, 1.0.1"
      }
    ]
  }
]

9.5 High

AI Score

Confidence

High

0.003 Low

EPSS

Percentile

66.2%

Related for CVELIST:CVE-2018-11756