Loading
Generated remediation guidance and an executive summary. No account required.
pulp 2.16.x and possibly older is vulnerable to an improper path parsing. A malicious user or a malicious iso feed repository can write to locations accessible to the 'apache' user. This may lead to overwrite of published content on other iso repositories.
Cite this page
CVE-2018-10917. CVEDatabase.com. Retrieved 1 May 2026. https://cvedatabase.com/cve/CVE-2018-10917
Use CWE-22, Pulpproject vendor hub and Pulp product page to widen CVE-2018-10917 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2024-7143, CVE-2015-5263 and CVE-2016-3704 for nearby disclosures in the same product family.