CVE-2018-17957
Status: ModifiedHigh (7.8)—
The YaST2 RMT module for configuring the SUSE Repository Mirroring Tool (RMT) before 1.1.2 exposed MySQL database passwords on process commandline, allowing local attackers to access or corrupt the RMT database.
CVSS
- Version: 3.0
- Vector: CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
- Base score: 7.8
Exploitation probability (EPSS)
- Probability of exploitation in the next 30 days: 0.38%
- Percentile among all scored CVEs: 29
- Score date: 10/9/2026
EPSS (Exploit Prediction Scoring System, FIRST) estimates how likely a vulnerability is to be exploited in the wild within 30 days. It complements CVSS (impact) and CISA KEV (confirmed exploitation).
Affected technologies (1)
CWEs
- CWE-214
- CWE-287
References
Raw JSON (NVD)
Show
{
"id": "CVE-2018-17957",
"cveTags": [],
"metrics": {
"cvssMetricV2": [
{
"type": "Primary",
"source": "nvd@nist.gov",
"cvssData": {
"version": "2.0",
"baseScore": 2.1,
"accessVector": "LOCAL",
"vectorString": "AV:L/AC:L/Au:N/C:P/I:N/A:N",
"authentication": "NONE",
"integrityImpact": "NONE",
"accessComplexity": "LOW",
"availabilityImpact": "NONE",
"confidentialityImpact": "PARTIAL"
},
"acInsufInfo": false,
"impactScore": 2.9,
"baseSeverity": "LOW",
"obtainAllPrivilege": false,
"exploitabilityScore": 3.9,
"obtainUserPrivilege": false,
"obtainOtherPrivilege": false,
"userInteractionRequired": false
}
],
"cvssMetricV30": [
{
"type": "Secondary",
"source": "security@opentext.com",
"cvssData": {
"scope": "UNCHANGED",
"version": "3.0",
"baseScore": 3.4,
"attackVector": "LOCAL",
"baseSeverity": "LOW",
"vectorString": "CVSS:3.0/AV:L/AC:L/PR:H/UI:N/S:U/C:L/I:L/A:N",
"integrityImpact": "LOW",
"userInteraction": "NONE",
"attackComplexity": "LOW",
"availabilityImpact": "NONE",
"privilegesRequired": "HIGH",
"confidentialityImpact": "LOW"
},
"impactScore": 2.5,
"exploitabilityScore": 0.8
},
{
"type": "Primary",
"source": "nvd@nist.gov",
"cvssData": {
"scope": "UNCHANGED",
"version": "3.0",
"baseScore": 7.8,
"attackVector": "LOCAL",
"baseSeverity": "HIGH",
"vectorString": "CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H",
"integrityImpact": "HIGH",
"userInteraction": "NONE",
"attackComplexity": "LOW",
"availabilityImpact": "HIGH",
"privilegesRequired": "LOW",
"confidentialityImpact": "HIGH"
},
"impactScore": 5.9,
"exploitabilityScore": 1.8
}
]
},
"affected": [
{
"source": "security@opentext.com",
"affectedData": [
{
"vendor": "SUSE",
"product": "yast2-rmt",
"versions": [
{
"status": "affected",
"version": "unspecified",
"lessThan": "1.1.2",
"versionType": "custom"
}
]
}
]
}
],
"published": "2018-12-26T15:29:00.297",
"references": [
{
"url": "https://bugzilla.suse.com/show_bug.cgi?id=1117602",
"source": "security@opentext.com"
},
{
"url": "https://lists.opensuse.org/opensuse-security-announce/2018-12/msg00068.html",
"source": "security@opentext.com"
},
{
"url": "https://bugzilla.suse.com/show_bug.cgi?id=1117602",
"source": "af854a3a-2127-422b-91ae-364da2661108"
},
{
"url": "https://lists.opensuse.org/opensuse-security-announce/2018-12/msg00068.html",
"source": "af854a3a-2127-422b-91ae-364da2661108"
}
],
"vulnStatus": "Modified",
"weaknesses": [
{
"type": "Secondary",
"source": "security@opentext.com",
"description": [
{
"lang": "en",
"value": "CWE-214"
}
]
},
{
"type": "Primary",
"source": "nvd@nist.gov",
"description": [
{
"lang": "en",
"value": "CWE-287"
}
]
}
],
"descriptions": [
{
"lang": "en",
"value": "The YaST2 RMT module for configuring the SUSE Repository Mirroring Tool (RMT) before 1.1.2 exposed MySQL database passwords on process commandline, allowing local attackers to access or corrupt the RMT database."
},
{
"lang": "es",
"value": "El módulo YaST2 RMT para configurar SUSE Repository Mirroring Tool (RMT) en versiones anteriores a la 1.1.2 exponía las contraseñas de la base de datos de MySQL en la línea de comandos del proceso, lo que permite que atacantes locales accedan o corrompan la base de datos RMT."
}
],
"lastModified": "2026-06-17T01:46:35.987",
"configurations": [
{
"nodes": [
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:a:suse:repository_mirroring_tool:*:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "EF3565FC-46AF-4518-B19F-8BB193853B1A",
"versionEndExcluding": "1.1.2"
}
],
"operator": "OR"
}
]
}
],
"sourceIdentifier": "security@opentext.com"
}