Lucene search

K
cvelistMitreCVELIST:CVE-2018-9057
HistoryMar 27, 2018 - 6:00 p.m.

CVE-2018-9057

2018-03-2718:00:00
mitre
www.cve.org

9.4 High

AI Score

Confidence

High

0.004 Low

EPSS

Percentile

74.6%

aws/resource_aws_iam_user_login_profile.go in the HashiCorp Terraform Amazon Web Services (AWS) provider through v1.12.0 has an inappropriate PRNG algorithm and seeding, which makes it easier for remote attackers to obtain access by leveraging an IAM account that was provisioned with a weak password.

9.4 High

AI Score

Confidence

High

0.004 Low

EPSS

Percentile

74.6%