### [CVE-2018-18561](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-18561) ![](https://img.shields.io/static/v1?label=Product&message=n%2Fa&color=blue) ![](https://img.shields.io/static/v1?label=Version&message=n%2Fa&color=blue) ![](https://img.shields.io/static/v1?label=Vulnerability&message=n%2Fa&color=brighgreen) ### Description An issue was discovered in Roche Accu-Chek Inform II Base Unit / Base Unit Hub before 03.01.04 and CoaguChek / cobas h232 Handheld Base Unit before 03.01.04. Insecure permissions in a service interface may allow authenticated attackers in the adjacent network to execute arbitrary commands on the operating system. ### POC #### Reference - https://ics-cert.us-cert.gov/advisories/ICSMA-18-310-01 - https://ics-cert.us-cert.gov/advisories/ICSMA-18-310-01 #### Github No PoCs found on GitHub currently.