5.5

CVE-2017-20082

Exploit

JUNG Smart Visu Server backdoor

A vulnerability, which was classified as problematic, has been found in JUNG Smart Visu Server 1.0.804/1.0.830/1.0.832. This issue affects some unknown processing. The manipulation leads to backdoor. The attack needs to be approached locally. The exploit has been disclosed to the public and may be used. Upgrading to version 1.0.900 is able to address this issue. It is recommended to upgrade the affected component.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Jung-groupSmart Visu Server Firmware Version1.0.804
   Jung-groupSmart Visu Server Version-
Jung-groupSmart Visu Server Firmware Version1.0.830
   Jung-groupSmart Visu Server Version-
Jung-groupSmart Visu Server Firmware Version1.0.832
   Jung-groupSmart Visu Server Version-
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.37% 0.29
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 5.5 1.8 3.6
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
nvd@nist.gov 4.9 3.9 6.9
AV:L/AC:L/Au:N/C:C/I:N/A:N
cna@vuldb.com 5.5 1.8 3.6
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
CWE-912 Hidden Functionality

The product contains functionality that is not documented, not part of the specification, and not accessible through an interface or command sequence that is obvious to the product's users or administrators.

http://seclists.org/fulldisclosure/2017/Feb/18
Third Party Advisory
Exploit
Mailing List
https://vuldb.com/?id.96815
Third Party Advisory
VDB Entry