CVE-2017-15111: Keycloak-Httpd-Client-Install Project Keycloak-Httpd-Client-Install
Medium severity, CVSS 5.5. EPSS: 0.4% chance of exploitation in the next 30 days.
keycloak-httpd-client-install versions before 0.8 insecurely creates temporary file allowing local attackers to overwrite other files via symbolic link.
Affected products
- Keycloak-Httpd-Client-Install Project Keycloak-Httpd-Client-Install: before 0.8 (fixed in 0.8)
Published 2018-01-20. Last modified 2026-06-17.