CVE-2018-17486 Information
Feb 14, 2021
cve
Description
Lobby Track Desktop could allow a local attacker to bypass security restrictions caused by an error in the find visitor function while in kiosk mode. By visiting the kiosk and selecting find visitor an attacker could exploit this vulnerability to delete visitor records or remove a host.
CVSS Vector
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N
Reference
https://exchange.xforce.ibmcloud.com/vulnerabilities/149646
Attack Complexity
LOW
Privileges Required
LOW
User Interaction Required
LOW
Scope
NONE
Confidentiality Impact
UNCHANGED
Integrity Impact
NONE
Availability Impact
HIGH
Base Score
NONE
Base Severity
5.5
Share on: