CVE-2018-5198

Severity CVSS v4.0:
Pending analysis
Type:
CWE-362 Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
Publication date:
20/12/2018
Last modified:
04/03/2023

Description

In Veraport G3 ALL on MacOS, a race condition when calling the Veraport API allow remote attacker to cause arbitrary file download and execution. This results in remote code execution.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:wizvera:veraport_g3:*:*:*:*:*:mac_os_x:*:*