CVE-2017-17707 Information
Feb 14, 2021
cve
Description
Due to missing authorization checks any authenticated user is able to list upload or delete attachments to password safe entries in Pleasant Password Server before 7.8.3. To perform those actions on an entry the user needs to know the corresponding \CredentialId\ value which uniquely identifies a password safe entry. Since \CredentialId\ values are implemented as GUIDs they are hard to guess. However if for example an entry’s owner grants read-only access to a malicious user the value gets exposed to the malicious user. The same holds true for temporary grants.
CVSS Vector
CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:N
Reference
https://www.profundis-labs.com/advisories/CVE-2017-17707.txt
Attack Complexity
LOW
Privileges Required
LOW
User Interaction Required
LOW
Scope
NONE
Confidentiality Impact
UNCHANGED
Integrity Impact
HIGH
Availability Impact
HIGH
Base Score
NONE
Base Severity
8.1
Share on: