// For flags

CVE-2017-14263

 

Severity Score

8.1
*CVSS v3

Exploit Likelihood

*EPSS

Affected Versions

*CPE

Public Exploits

1
*Multiple Sources

Exploited in Wild

-
*KEV

Decision

-
*SSVC
Descriptions

Honeywell NVR devices allow remote attackers to create a user account in the admin group by leveraging access to a guest account to obtain a session ID, and then sending that session ID in a userManager.addUser request to the /RPC2 URI. The attacker can login to the device with that new user account to fully control the device.

Los dispositivos NVR de Honeywell permiten a los atacantes remotos crear una cuenta de usuario en el grupo admin accediendo a la cuenta guest para obtener un ID de sesión y luego enviar dicho ID de sesión a la URI /RPC2 mediante una petición userManager.addUser. El atacante puede conectarse al dispositivo con la nueva cuenta de usuario para hacerse con el control completo de dicho dispositivo.

*Credits: N/A
CVSS Scores
Attack Vector
Network
Attack Complexity
High
Privileges Required
None
User Interaction
None
Scope
Unchanged
Confidentiality
High
Integrity
High
Availability
High
Attack Vector
Network
Attack Complexity
Medium
Authentication
None
Confidentiality
Complete
Integrity
Complete
Availability
Complete
* Common Vulnerability Scoring System
SSVC
  • Decision:-
Exploitation
-
Automatable
-
Tech. Impact
-
* Organization's Worst-case Scenario
Timeline
  • 2017-09-10 CVE Reserved
  • 2017-09-11 CVE Published
  • 2017-09-13 First Exploit
  • 2024-08-05 CVE Updated
  • 2024-08-13 EPSS Updated
  • ---------- Exploited in Wild
  • ---------- KEV Due Date
CWE
  • CWE-384: Session Fixation
CAPEC
References (2)
Affected Vendors, Products, and Versions
Vendor Product Version Other Status
Vendor Product Version Other Status <-- --> Vendor Product Version Other Status
Honeywell
Search vendor "Honeywell"
Enterprise Dvr Firmware
Search vendor "Honeywell" for product "Enterprise Dvr Firmware"
--
Affected
in Honeywell
Search vendor "Honeywell"
Enterprise Dvr
Search vendor "Honeywell" for product "Enterprise Dvr"
--
Safe
Honeywell
Search vendor "Honeywell"
Maxpro Nvr Hybrid Se Firmware
Search vendor "Honeywell" for product "Maxpro Nvr Hybrid Se Firmware"
--
Affected
in Honeywell
Search vendor "Honeywell"
Maxpro Nvr Hybrid Se
Search vendor "Honeywell" for product "Maxpro Nvr Hybrid Se"
--
Safe
Honeywell
Search vendor "Honeywell"
Maxpro Nvr Hybrid Xe Firmware
Search vendor "Honeywell" for product "Maxpro Nvr Hybrid Xe Firmware"
--
Affected
in Honeywell
Search vendor "Honeywell"
Maxpro Nvr Hybrid Xe
Search vendor "Honeywell" for product "Maxpro Nvr Hybrid Xe"
--
Safe
Honeywell
Search vendor "Honeywell"
Maxpro Nvr Se Firmware
Search vendor "Honeywell" for product "Maxpro Nvr Se Firmware"
--
Affected
in Honeywell
Search vendor "Honeywell"
Maxpro Nvr Se
Search vendor "Honeywell" for product "Maxpro Nvr Se"
--
Safe
Honeywell
Search vendor "Honeywell"
Maxpro Nvr Xe Firmware
Search vendor "Honeywell" for product "Maxpro Nvr Xe Firmware"
--
Affected
in Honeywell
Search vendor "Honeywell"
Maxpro Nvr Xe
Search vendor "Honeywell" for product "Maxpro Nvr Xe"
--
Safe
Honeywell
Search vendor "Honeywell"
Fusion Iv Rev C Firmware
Search vendor "Honeywell" for product "Fusion Iv Rev C Firmware"
--
Affected
in Honeywell
Search vendor "Honeywell"
Fusion Iv Rev C
Search vendor "Honeywell" for product "Fusion Iv Rev C"
--
Safe
Honeywell
Search vendor "Honeywell"
Maxpro Nvr Pe Firmware
Search vendor "Honeywell" for product "Maxpro Nvr Pe Firmware"
--
Affected
in Honeywell
Search vendor "Honeywell"
Maxpro Nvr Pe
Search vendor "Honeywell" for product "Maxpro Nvr Pe"
--
Safe