CVE-2017-10829
UnknownEPSS 1.23%
Last modified
CVE-2017-10829 is a vulnerability of currently unknown severity. Untrusted search path vulnerability in Remote Support Tool (Enkaku Support Tool) All versions distributed through the website till 2017 August 10 allow an attacker to gain privileges via a Trojan horse DLL in an unspecified directory.. EPSS estimates a 1.23% chance of exploitation in the next 30 days.
Description
Untrusted search path vulnerability in Remote Support Tool (Enkaku Support Tool) All versions distributed through the website till 2017 August 10 allow an attacker to gain privileges via a Trojan horse DLL in an unspecified directory.
Metrics
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Ntt | Enkaku Support Tool | All versions |
References
- http://flets-w.com/topics/remote_support_vulnerability/Vendor Advisory
- https://flets.com/osa/remote/pc_tool.htmlVendor Advisory
- https://jvn.jp/en/jp/JVN26115441/index.htmlThird Party Advisory, VDB Entry
- http://flets-w.com/topics/remote_support_vulnerability/Vendor Advisory
- https://flets.com/osa/remote/pc_tool.htmlVendor Advisory
- https://jvn.jp/en/jp/JVN26115441/index.htmlThird Party Advisory, VDB Entry
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2017-10829?
Untrusted search path vulnerability in Remote Support Tool (Enkaku Support Tool) All versions distributed through the website till 2017 August 10 allow an attacker to gain privileges via a Trojan horse DLL in an unspecified directory.
How severe is CVE-2017-10829?
Severity scoring for CVE-2017-10829 is pending analysis. The EPSS model estimates a 1.23% probability of exploitation in the next 30 days.
How do I fix CVE-2017-10829?
Check the vendor references and advisories linked above for patched versions and mitigation guidance. You can also run a Strix scan to test if your systems are affected.
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2017
- CVE-2017-10823Untrusted search path vulnerability in Installer for Shin Ki…
- CVE-2017-10824Untrusted search path vulnerability in TDB CA TypeA use soft…
- CVE-2017-10825Untrusted search path vulnerability in Installer of Flets Ea…
- CVE-2017-10826Untrusted search path vulnerability in Security Kinou Mihari…
- CVE-2017-10827Untrusted search path vulnerability in Flets Azukeru for Win…
- CVE-2017-10828Untrusted search path vulnerability in Flets Install Tool al…
- CVE-2017-1083In FreeBSD before 11.2-RELEASE, a stack guard-page is availa…
- CVE-2017-10830Untrusted search path vulnerability in Security Setup Tool a…
- CVE-2017-10831Untrusted search path vulnerability in The electronic authen…
- CVE-2017-10832"Dokodemo eye Smart HD" SCR02HD Firmware 1.0.3.1000 and earl…
- CVE-2017-10833"Dokodemo eye Smart HD" SCR02HD Firmware 1.0.3.1000 and earl…
- CVE-2017-10834Directory traversal vulnerability in "Dokodemo eye Smart HD"…
Are you affected by CVE-2017-10829?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
