CVE

CVE-2018-15728

CVE-2018-15728

An issue was discovered in Couchbase Server. Authenticated users can send arbitrary Erlang code to the ‘diag/eval’ endpoint of the REST API (available by default on TCP/8091 and/or TCP/18091). The executed code in the underlying operating system will run with the privileges of the user running Couchbase server.

Source: CVE-2018-15728

Exit mobile version