CVE-2017-6894
Last modified
CVE-2017-6894 is a high-severity vulnerability rated 7.8/10 on the CVSS scale. A vulnerability exists in FlexNet Manager Suite releases 2015 R2 SP3 and earlier (including FlexNet Manager Platform 9.2 and earlier) that affects the inventory gathering components and can be exploited by local users to perform certain actions with elevated privileges on the local system.. EPSS estimates a 0.17% chance of exploitation in the next 30 days.
Description
A vulnerability exists in FlexNet Manager Suite releases 2015 R2 SP3 and earlier (including FlexNet Manager Platform 9.2 and earlier) that affects the inventory gathering components and can be exploited by local users to perform certain actions with elevated privileges on the local system.
Metrics
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Flexera | Flexnet Manager | <= 9.2 |
| Flexera | Flexnet Manager Suite 2015 | All versions |
| Flexera | Flexnet Manager Suite 2015 | r2 |
References
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2017-6894?
How severe is CVE-2017-6894?
How do I fix CVE-2017-6894?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2017
- CVE-2017-6887A boundary error within the "parse_tiff_ifd()" function (int…
- CVE-2017-6888An error in the "read_metadata_vorbiscomment_()" function (s…5.5
- CVE-2017-6889An integer overflow error within the "foveon_load_camf()" fu…
- CVE-2017-6890A boundary error within the "foveon_load_camf()" function (d…
- CVE-2017-6891Two errors in the "asn1_find_node()" function (lib/parser_au…8.8
- CVE-2017-6892In libsndfile version 1.0.28, an error in the "aiff_read_cha…
- CVE-2017-6895USB Pratirodh allows remote attackers to conduct XML Externa…
- CVE-2017-6896Privilege escalation vulnerability on the DIGISOL DG-HR1400 …
- CVE-2017-6899The msm_bus_dbg_update_request_write function in drivers/pla…
- CVE-2017-6900An issue was discovered in Riello NetMan 204 14-2 and 15-2. …
- CVE-2017-6902Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultI…
- CVE-2017-6903In ioquake3 before 2017-03-14, the auto-downloading feature …
Are you affected by CVE-2017-6894?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
