AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2018-11061

CRITICAL · CVSS 9.1 EPSS 4.98% Public Exploit

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2018-08-24 · Last synced 2026-08-04

CyberRota Analysis

AI analysis pending.

Public Exploit Signal

A public exploit, PoC, GitHub repository or Metasploit reference was detected for this CVE.

Detected Signals
exploit

Note: these links are listed for security research and verification purposes only.

CVE
CVE-2018-11061
Severity
CRITICAL
CVSS
9.1
EPSS
4.98%

Original NVD Description

RSA NetWitness Platform versions prior to 11.1.0.2 and RSA Security Analytics versions prior to 10.6.6 are vulnerable to a server-side template injection vulnerability due to insecure configuration of the template engine used in the product. A remote authenticated malicious RSA NetWitness Server user with an Admin or Operator role could exploit this vulnerability to execute arbitrary commands on the server with root privileges.