CVE-2017-14263
 
Severity Score
8.1
*CVSS v3
Exploit Likelihood
*EPSS
Affected Versions
*CPE
Public Exploits
1
*Multiple Sources
Exploited in Wild
-
*KEV
Decision
-
*SSVC
Descriptions
Honeywell NVR devices allow remote attackers to create a user account in the admin group by leveraging access to a guest account to obtain a session ID, and then sending that session ID in a userManager.addUser request to the /RPC2 URI. The attacker can login to the device with that new user account to fully control the device.
Los dispositivos NVR de Honeywell permiten a los atacantes remotos crear una cuenta de usuario en el grupo admin accediendo a la cuenta guest para obtener un ID de sesión y luego enviar dicho ID de sesión a la URI /RPC2 mediante una petición userManager.addUser. El atacante puede conectarse al dispositivo con la nueva cuenta de usuario para hacerse con el control completo de dicho dispositivo.
*Credits:
N/A
CVSS Scores
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality
Integrity
Availability
Attack Vector
Attack Complexity
Authentication
Confidentiality
Integrity
Availability
* Common Vulnerability Scoring System
SSVC
- Decision:-
Exploitation
Automatable
Tech. Impact
* Organization's Worst-case Scenario
Timeline
- 2017-09-10 CVE Reserved
- 2017-09-11 CVE Published
- 2017-09-13 First Exploit
- 2024-08-05 CVE Updated
- 2024-08-13 EPSS Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
CWE
- CWE-384: Session Fixation
CAPEC
References (2)
URL | Tag | Source |
---|---|---|
https://github.com/zzz66686/Honeywell_NVR_vul | Third Party Advisory |
URL | Date | SRC |
---|---|---|
https://github.com/zzz66686/CVE-2017-14263 | 2017-09-13 |
URL | Date | SRC |
---|
URL | Date | SRC |
---|
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Honeywell Search vendor "Honeywell" | Enterprise Dvr Firmware Search vendor "Honeywell" for product "Enterprise Dvr Firmware" | - | - |
Affected
| in | Honeywell Search vendor "Honeywell" | Enterprise Dvr Search vendor "Honeywell" for product "Enterprise Dvr" | - | - |
Safe
|
Honeywell Search vendor "Honeywell" | Maxpro Nvr Hybrid Se Firmware Search vendor "Honeywell" for product "Maxpro Nvr Hybrid Se Firmware" | - | - |
Affected
| in | Honeywell Search vendor "Honeywell" | Maxpro Nvr Hybrid Se Search vendor "Honeywell" for product "Maxpro Nvr Hybrid Se" | - | - |
Safe
|
Honeywell Search vendor "Honeywell" | Maxpro Nvr Hybrid Xe Firmware Search vendor "Honeywell" for product "Maxpro Nvr Hybrid Xe Firmware" | - | - |
Affected
| in | Honeywell Search vendor "Honeywell" | Maxpro Nvr Hybrid Xe Search vendor "Honeywell" for product "Maxpro Nvr Hybrid Xe" | - | - |
Safe
|
Honeywell Search vendor "Honeywell" | Maxpro Nvr Se Firmware Search vendor "Honeywell" for product "Maxpro Nvr Se Firmware" | - | - |
Affected
| in | Honeywell Search vendor "Honeywell" | Maxpro Nvr Se Search vendor "Honeywell" for product "Maxpro Nvr Se" | - | - |
Safe
|
Honeywell Search vendor "Honeywell" | Maxpro Nvr Xe Firmware Search vendor "Honeywell" for product "Maxpro Nvr Xe Firmware" | - | - |
Affected
| in | Honeywell Search vendor "Honeywell" | Maxpro Nvr Xe Search vendor "Honeywell" for product "Maxpro Nvr Xe" | - | - |
Safe
|
Honeywell Search vendor "Honeywell" | Fusion Iv Rev C Firmware Search vendor "Honeywell" for product "Fusion Iv Rev C Firmware" | - | - |
Affected
| in | Honeywell Search vendor "Honeywell" | Fusion Iv Rev C Search vendor "Honeywell" for product "Fusion Iv Rev C" | - | - |
Safe
|
Honeywell Search vendor "Honeywell" | Maxpro Nvr Pe Firmware Search vendor "Honeywell" for product "Maxpro Nvr Pe Firmware" | - | - |
Affected
| in | Honeywell Search vendor "Honeywell" | Maxpro Nvr Pe Search vendor "Honeywell" for product "Maxpro Nvr Pe" | - | - |
Safe
|