Lucene search

K
cveFlexeraCVE-2017-6894
HistoryMar 29, 2023 - 9:15 p.m.

CVE-2017-6894

2023-03-2921:15:07
CWE-269
flexera
web.nvd.nist.gov
18
cve-2017-6894
flexnet manager suite
vulnerability
inventory gathering components
local users
privilege escalation
security issue
nvd

CVSS3

7.8

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

AI Score

7.4

Confidence

High

EPSS

0

Percentile

5.1%

A vulnerability exists in FlexNet Manager Suite releases 2015 R2 SP3 and earlier (including FlexNet Manager Platform 9.2 and earlier) that affects the inventory gathering components and can be exploited by local users to perform certain actions with elevated privileges on the local system.

Affected configurations

Nvd
Node
flexeraflexnet_managerRange9.2
OR
flexeraflexnet_manager_suite_2015Match-
OR
flexeraflexnet_manager_suite_2015Matchr2-
OR
flexeraflexnet_manager_suite_2015Matchr2sp1
OR
flexeraflexnet_manager_suite_2015Matchr2sp2
OR
flexeraflexnet_manager_suite_2015Matchr2sp3
VendorProductVersionCPE
flexeraflexnet_manager*cpe:2.3:a:flexera:flexnet_manager:*:*:*:*:*:*:*:*
flexeraflexnet_manager_suite_2015-cpe:2.3:a:flexera:flexnet_manager_suite_2015:-:*:*:*:*:*:*:*
flexeraflexnet_manager_suite_2015r2cpe:2.3:a:flexera:flexnet_manager_suite_2015:r2:-:*:*:*:*:*:*
flexeraflexnet_manager_suite_2015r2cpe:2.3:a:flexera:flexnet_manager_suite_2015:r2:sp1:*:*:*:*:*:*
flexeraflexnet_manager_suite_2015r2cpe:2.3:a:flexera:flexnet_manager_suite_2015:r2:sp2:*:*:*:*:*:*
flexeraflexnet_manager_suite_2015r2cpe:2.3:a:flexera:flexnet_manager_suite_2015:r2:sp3:*:*:*:*:*:*

CVSS3

7.8

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

AI Score

7.4

Confidence

High

EPSS

0

Percentile

5.1%

Related for CVE-2017-6894