CVE-2017-10890
MEDIUM
4,6
Source: [email protected]
Attack Vector: adjacent_network
Attack Complexity: low
Privileges Required: none
User Interaction: required
Scope: unchanged
Confidentiality: low
Integrity: low
Availability: none
MEDIUM
4,3
Source: [email protected]
Access Vector: adjacent_network
Access Complexity: medium
Authentication: none
Confidentiality: partial
Integrity: partial
Availability: none
Description
AI Translation Available
Session management issue in RX-V200 firmware versions prior to 09.87.17.09, RX-V100 firmware versions prior to 03.29.17.09, RX-CLV1-P firmware versions prior to 79.17.17.09, RX-CLV2-B firmware versions prior to 89.07.17.09, RX-CLV3-N firmware versions prior to 91.09.17.10 allows an attacker on the same LAN to perform arbitrary operations or access information via unspecified vectors.
EPSS (Exploit Prediction Scoring System)
Trend Analysis
EPSS (Exploit Prediction Scoring System)
Prevede la probabilità di sfruttamento basata su intelligence sulle minacce e sulle caratteristiche della vulnerabilità.
EPSS Score
0,0009
Percentile
0,3th
Updated
EPSS Score Trend (Last 90 Days)
384
Session Fixation
IncompleteCommon Consequences
Security Scopes Affected:
Access Control
Potential Impacts:
Gain Privileges Or Assume Identity
Applicable Platforms
Technologies:
Web Based, Web Server
Operating System
Rx-Clv1-P Firmware by Sharp
Version Range Affected
To
79.17.17.09
(exclusive)
CPE Identifier
View Detailed Analysis
cpe:2.3:o:sharp:rx-clv1-p_firmware:*:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Rx-Clv2-B Firmware by Sharp
Version Range Affected
To
89.07.17.09
(exclusive)
CPE Identifier
View Detailed Analysis
cpe:2.3:o:sharp:rx-clv2-b_firmware:*:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Rx-Clv3-N Firmware by Sharp
Version Range Affected
To
91.09.17.10
(exclusive)
CPE Identifier
View Detailed Analysis
cpe:2.3:o:sharp:rx-clv3-n_firmware:*:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Rx-V100 Firmware by Sharp
Version Range Affected
To
03.29.17.09
(exclusive)
CPE Identifier
View Detailed Analysis
cpe:2.3:o:sharp:rx-v100_firmware:*:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Rx-V200 Firmware by Sharp
Version Range Affected
To
09.87.17.09
(exclusive)
CPE Identifier
View Detailed Analysis
cpe:2.3:o:sharp:rx-v200_firmware:*:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
https://jvn.jp/en/jp/JVN76382932/index.html
https://jvn.jp/en/jp/JVN76382932/index.html