Description
UiPath Orchestrator through 2018.2.4 allows any authenticated user to change the information of arbitrary users (even administrators) leading to privilege escalation and remote code execution.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2018-9060 | UiPath Orchestrator through 2018.2.4 allows any authenticated user to change the information of arbitrary users (even administrators) leading to privilege escalation and remote code execution. |
References
History
Wed, 16 Jul 2025 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
epss
|
epss
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-05T10:47:04.176Z
Reserved: 2018-09-21T00:00:00.000Z
Link: CVE-2018-17305
No data.
Status : Modified
Published: 2019-04-11T17:29:00.227
Modified: 2024-11-21T03:54:12.433
Link: CVE-2018-17305
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD