Lucene search

K
cve[email protected]CVE-2017-20015
HistoryMar 28, 2022 - 9:15 p.m.

CVE-2017-20015

2022-03-2821:15:08
CWE-404
web.nvd.nist.gov
29
cve-2017-20015
vulnerability
weka interest security scanner
denial of service
lan viewer
local attack

2.1 Low

CVSS2

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

PARTIAL

AV:L/AC:L/Au:N/C:N/I:N/A:P

5.5 Medium

CVSS3

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

HIGH

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

5.4 Medium

AI Score

Confidence

High

0.0004 Low

EPSS

Percentile

13.4%

A vulnerability, which was classified as problematic, was found in WEKA INTEREST Security Scanner up to 1.8. This affects an unknown part of the component LAN Viewer. The manipulation with an unknown input leads to denial of service. Attacking locally is a requirement. The exploit has been disclosed to the public and may be used. NOTE: This vulnerability only affects products that are no longer supported by the maintainer

Affected configurations

Vulners
NVD
Node
wekainterest_security_scannerMatch1.0
OR
wekainterest_security_scannerMatch1.1
OR
wekainterest_security_scannerMatch1.2
OR
wekainterest_security_scannerMatch1.3
OR
wekainterest_security_scannerMatch1.4
OR
wekainterest_security_scannerMatch1.5
OR
wekainterest_security_scannerMatch1.6
OR
wekainterest_security_scannerMatch1.7
OR
wekainterest_security_scannerMatch1.8
VendorProductVersionCPE
wekainterest_security_scanner1.0cpe:2.3:a:weka:interest_security_scanner:1.0:*:*:*:*:*:*:*
wekainterest_security_scanner1.1cpe:2.3:a:weka:interest_security_scanner:1.1:*:*:*:*:*:*:*
wekainterest_security_scanner1.2cpe:2.3:a:weka:interest_security_scanner:1.2:*:*:*:*:*:*:*
wekainterest_security_scanner1.3cpe:2.3:a:weka:interest_security_scanner:1.3:*:*:*:*:*:*:*
wekainterest_security_scanner1.4cpe:2.3:a:weka:interest_security_scanner:1.4:*:*:*:*:*:*:*
wekainterest_security_scanner1.5cpe:2.3:a:weka:interest_security_scanner:1.5:*:*:*:*:*:*:*
wekainterest_security_scanner1.6cpe:2.3:a:weka:interest_security_scanner:1.6:*:*:*:*:*:*:*
wekainterest_security_scanner1.7cpe:2.3:a:weka:interest_security_scanner:1.7:*:*:*:*:*:*:*
wekainterest_security_scanner1.8cpe:2.3:a:weka:interest_security_scanner:1.8:*:*:*:*:*:*:*

CNA Affected

[
  {
    "product": "INTEREST Security Scanner",
    "vendor": "WEKA",
    "versions": [
      {
        "status": "affected",
        "version": "1.0"
      },
      {
        "status": "affected",
        "version": "1.1"
      },
      {
        "status": "affected",
        "version": "1.2"
      },
      {
        "status": "affected",
        "version": "1.3"
      },
      {
        "status": "affected",
        "version": "1.4"
      },
      {
        "status": "affected",
        "version": "1.5"
      },
      {
        "status": "affected",
        "version": "1.6"
      },
      {
        "status": "affected",
        "version": "1.7"
      },
      {
        "status": "affected",
        "version": "1.8"
      }
    ]
  }
]

2.1 Low

CVSS2

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

PARTIAL

AV:L/AC:L/Au:N/C:N/I:N/A:P

5.5 Medium

CVSS3

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

HIGH

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

5.4 Medium

AI Score

Confidence

High

0.0004 Low

EPSS

Percentile

13.4%

Related for CVE-2017-20015