8.8
CVE-2017-3770
- EPSS 0.46%
- Veröffentlicht 22.09.2017 14:29:00
- Zuletzt bearbeitet 13.05.2026 00:24:29
- Quelle psirt@lenovo.com
- CVE-Watchlists
- Unerledigt
Privilege escalation vulnerability in LXCA versions earlier than 1.3.2 where an authenticated user may be able to abuse certain web interface functionality to execute privileged commands within the underlying LXCA operating system.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Lenovo ≫ Xclarity Administrator Version <= 1.3.1
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.46% | 0.614 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 8.8 | 2.8 | 5.9 |
CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
|
| nvd@nist.gov | 6.5 | 8 | 6.4 |
AV:N/AC:L/Au:S/C:P/I:P/A:P
|