CVE-2018-17486
Last modified
CVE-2018-17486 is a vulnerability of currently unknown severity. Lobby Track Desktop could allow a local attacker to bypass security restrictions, caused by an error in the find visitor function while in kiosk mode. By visiting the kiosk and selecting find visitor, an attacker could exploit this vulnerability to delete visitor records or remove a host.. EPSS estimates a 0.32% chance of exploitation in the next 30 days.
Description
Lobby Track Desktop could allow a local attacker to bypass security restrictions, caused by an error in the find visitor function while in kiosk mode. By visiting the kiosk and selecting find visitor, an attacker could exploit this vulnerability to delete visitor records or remove a host.
Metrics
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Jollytech | Lobby Track | 8.2.186 |
References
- https://exchange.xforce.ibmcloud.com/vulnerabilities/149646Third Party Advisory, VDB Entry
- https://exchange.xforce.ibmcloud.com/vulnerabilities/149646Third Party Advisory, VDB Entry
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2018-17486?
How severe is CVE-2018-17486?
How do I fix CVE-2018-17486?
Are you affected by CVE-2018-17486?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
