CVE-2018-17305: Uipath Orchestrator
High severity, CVSS 8.8. EPSS: 1.5% chance of exploitation in the next 30 days.
UiPath Orchestrator through 2018.2.4 allows any authenticated user to change the information of arbitrary users (even administrators) leading to privilege escalation and remote code execution.
Affected products
- Uipath Orchestrator: up to and including 2018.2.4
Published 2019-04-11. Last modified 2026-06-17.