CVE-2018-20031: Flexera Flexnet Publisher
High severity, CVSS 7.5. EPSS: 2.2% chance of exploitation in the next 30 days.
A Denial of Service vulnerability related to preemptive item deletion in lmgrd and vendor daemon components of FlexNet Publisher version 11.16.1.0 and earlier allows a remote attacker to send a combination of messages to lmgrd or the vendor daemon, causing the heartbeat between lmgrd and the vendor daemon to stop, and the vendor daemon to shut down.
Affected products
- Flexera Flexnet Publisher: up to and including 11.16.1.0
- Oracle Communications Lsms: from 13.1, up to and including 13.4
Published 2019-03-21. Last modified 2026-06-17.