CVE-2018-17489
Last modified
CVE-2018-17489 is a vulnerability of currently unknown severity. EasyLobby Solo could allow a local attacker to obtain sensitive information, caused by the storing of the social security number in plaintext. By visiting the kiosk and viewing the Visitor table of the database, an attacker could exploit this vulnerability to view stored social security numbers.. EPSS estimates a 0.21% chance of exploitation in the next 30 days.
Description
EasyLobby Solo could allow a local attacker to obtain sensitive information, caused by the storing of the social security number in plaintext. By visiting the kiosk and viewing the Visitor table of the database, an attacker could exploit this vulnerability to view stored social security numbers.
Metrics
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Hidglobal | Easylobby Solo | 11.0.4563 |
References
- https://exchange.xforce.ibmcloud.com/vulnerabilities/149649Third Party Advisory, VDB Entry
- https://exchange.xforce.ibmcloud.com/vulnerabilities/149649Third Party Advisory, VDB Entry
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2018-17489?
How severe is CVE-2018-17489?
How do I fix CVE-2018-17489?
Are you affected by CVE-2018-17489?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
