AUGUST 4, 2026
Live Feed
Return to register
Case File

CVE-2018-12475

MEDIUM · CVSS 6.5 EPSS 0.61%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2020-09-01 · Last synced 2026-08-04

Field Assessment

AI analysis pending.

CVE
CVE-2018-12475
Severity
MEDIUM
CVSS
6.5
EPSS
0.61%

Original Filing — NVD Description

A Externally Controlled Reference to a Resource in Another Sphere vulnerability in obs-service-download_files of openSUSE Open Build Service allows authenticated users to generate HTTP request against internal networks and potentially downloading data that is exposed there. This issue affects: openSUSE Open Build Service .