CVE-2017-15918: Ignitum Sera

High severity, CVSS 7.8. EPSS: 1.2% chance of exploitation in the next 30 days.

Sera 1.2 stores the user's login password in plain text in their home directory. This makes privilege escalation trivial and also exposes the user and system keychains to local attacks.

Affected products

Published 2017-11-01. Last modified 2026-06-17.