AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2018-12072

CRITICAL · CVSS 9.8 EPSS 1.54% Public Exploit

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2018-06-17 · Last synced 2026-08-04

CyberRota Analysis

AI analysis pending.

Public Exploit Signal

A public exploit, PoC, GitHub repository or Metasploit reference was detected for this CVE.

GitHub PoC Links

Note: these links are listed for security research and verification purposes only.

CVE
CVE-2018-12072
Severity
CRITICAL
CVSS
9.8
EPSS
1.54%

Original NVD Description

An issue was discovered in Cloud Media Popcorn A-200 03-05-130708-21-POP-411-000 firmware. It is configured to provide TELNET remote access (without a password) that pops a shell as root. If an attacker can connect to port 23 on the device, he can completely compromise it.