CVE-2017-6885
Last modified
CVE-2017-6885 is a vulnerability of currently unknown severity. An error when handling certain external commands and services related to the FlexNet Inventory Agent and FlexNet Beacon of the Flexera Software FlexNet Manager Suite 2017 before 2017 R1 and 2014 R3 through 2016 R1 SP1 can be exploited to gain elevated privileges.. EPSS estimates a 1.17% chance of exploitation in the next 30 days.
Description
An error when handling certain external commands and services related to the FlexNet Inventory Agent and FlexNet Beacon of the Flexera Software FlexNet Manager Suite 2017 before 2017 R1 and 2014 R3 through 2016 R1 SP1 can be exploited to gain elevated privileges.
Metrics
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Flexerasoftware | Flexnet Manager Suite | 2014 |
| Flexerasoftware | Flexnet Manager Suite | 2015 |
| Flexerasoftware | Flexnet Manager Suite | 2016 |
| Flexerasoftware | Flexnet Manager Suite | 2017 |
References
- https://secuniaresearch.flexerasoftware.com/advisories/76223/Permissions Required
- https://secuniaresearch.flexerasoftware.com/advisories/76223/Permissions Required
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2017-6885?
How severe is CVE-2017-6885?
How do I fix CVE-2017-6885?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2017
- CVE-2017-6874Race condition in kernel/ucount.c in the Linux kernel throug…7
- CVE-2017-6877Cross-site scripting (XSS) vulnerability in SVG file handlin…
- CVE-2017-6878Cross-site scripting (XSS) vulnerability in MetInfo 5.3.15 a…
- CVE-2017-6880Buffer overflow in Cerberus FTP Server 8.0.10.3 allows remot…
- CVE-2017-6883The ConvertToPDF plugin in Foxit Reader before 8.2.1 and Pha…
- CVE-2017-6884A command injection vulnerability was discovered on the Zyxe…8.8
- CVE-2017-6886An error within the "parse_tiff_ifd()" function (internal/dc…
- CVE-2017-6887A boundary error within the "parse_tiff_ifd()" function (int…
- CVE-2017-6888An error in the "read_metadata_vorbiscomment_()" function (s…5.5
- CVE-2017-6889An integer overflow error within the "foveon_load_camf()" fu…
- CVE-2017-6890A boundary error within the "foveon_load_camf()" function (d…
- CVE-2017-6891Two errors in the "asn1_find_node()" function (lib/parser_au…8.8
Are you affected by CVE-2017-6885?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
