Lucene search

K
nvd[email protected]NVD:CVE-2017-20083
HistoryJun 22, 2022 - 6:15 a.m.

CVE-2017-20083

2022-06-2206:15:07
CWE-912
web.nvd.nist.gov
2
vulnerability
jung smart visu server
ssh server
backdoor
local attack
public disclosure
upgrade required

CVSS2

7.2

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:L/AC:L/Au:N/C:C/I:C/A:C

CVSS3

7.8

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

EPSS

0.001

Percentile

17.8%

A vulnerability, which was classified as critical, was found in JUNG Smart Visu Server 1.0.804/1.0.830/1.0.832. Affected is an unknown function of the component SSH Server. The manipulation leads to backdoor. An attack has to be approached locally. The exploit has been disclosed to the public and may be used. Upgrading to version 1.0.900 is able to address this issue. It is recommended to upgrade the affected component.

Affected configurations

Nvd
Node
jung-groupsmart_visu_server_firmwareMatch1.0.804
OR
jung-groupsmart_visu_server_firmwareMatch1.0.830
OR
jung-groupsmart_visu_server_firmwareMatch1.0.832
AND
jung-groupsmart_visu_serverMatch-
VendorProductVersionCPE
jung-groupsmart_visu_server_firmware1.0.804cpe:2.3:o:jung-group:smart_visu_server_firmware:1.0.804:*:*:*:*:*:*:*
jung-groupsmart_visu_server_firmware1.0.830cpe:2.3:o:jung-group:smart_visu_server_firmware:1.0.830:*:*:*:*:*:*:*
jung-groupsmart_visu_server_firmware1.0.832cpe:2.3:o:jung-group:smart_visu_server_firmware:1.0.832:*:*:*:*:*:*:*
jung-groupsmart_visu_server-cpe:2.3:h:jung-group:smart_visu_server:-:*:*:*:*:*:*:*

CVSS2

7.2

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:L/AC:L/Au:N/C:C/I:C/A:C

CVSS3

7.8

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

EPSS

0.001

Percentile

17.8%

Related for NVD:CVE-2017-20083