CVE-2017-20023
Solare Solar-Log Network Config privileges management
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
1Exploited in Wild
-Decision
Descriptions
A vulnerability was found in Solare Solar-Log 2.8.4-56/3.5.2-85 and classified as critical. This issue affects some unknown processing of the component Network Config. The manipulation leads to privilege escalation. The attack may be initiated remotely. Upgrading to version 3.5.3-86 is able to address this issue. It is recommended to upgrade the affected component.
Se ha encontrado una vulnerabilidad en Solare Solar-Log 2.8.4-56/3.5.2-85 y ha sido clasificada como crítica. Este problema afecta a algunos procesos desconocidos del componente Network Config. La manipulación conlleva a una escalada de privilegios. El ataque puede ser iniciado remotamente. La actualización a versión 3.5.3-86 puede abordar este problema. Es recomendado actualizar el componente afectado
CVSS Scores
SSVC
- Decision:-
Timeline
- 2022-06-05 CVE Reserved
- 2022-06-09 CVE Published
- 2023-12-31 EPSS Updated
- 2024-08-05 CVE Updated
- 2024-08-05 First Exploit
- ---------- Exploited in Wild
- ---------- KEV Due Date
CWE
- CWE-269: Improper Privilege Management
CAPEC
References (2)
URL | Tag | Source |
---|---|---|
https://vuldb.com/?id.98933 | Third Party Advisory |
URL | Date | SRC |
---|---|---|
http://seclists.org/fulldisclosure/2017/Mar/58 | 2024-08-05 |
URL | Date | SRC |
---|
URL | Date | SRC |
---|
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Solar-log Search vendor "Solar-log" | Solar-log 250 Firmware Search vendor "Solar-log" for product "Solar-log 250 Firmware" | 2.8.4-56 Search vendor "Solar-log" for product "Solar-log 250 Firmware" and version "2.8.4-56" | - |
Affected
| in | Solar-log Search vendor "Solar-log" | Solar-log 250 Search vendor "Solar-log" for product "Solar-log 250" | - | - |
Safe
|
Solar-log Search vendor "Solar-log" | Solar-log 250 Firmware Search vendor "Solar-log" for product "Solar-log 250 Firmware" | 3.5.2-85 Search vendor "Solar-log" for product "Solar-log 250 Firmware" and version "3.5.2-85" | - |
Affected
| in | Solar-log Search vendor "Solar-log" | Solar-log 250 Search vendor "Solar-log" for product "Solar-log 250" | - | - |
Safe
|
Solar-log Search vendor "Solar-log" | Solar-log 300 Firmware Search vendor "Solar-log" for product "Solar-log 300 Firmware" | 2.8.4-56 Search vendor "Solar-log" for product "Solar-log 300 Firmware" and version "2.8.4-56" | - |
Affected
| in | Solar-log Search vendor "Solar-log" | Solar-log 300 Search vendor "Solar-log" for product "Solar-log 300" | - | - |
Safe
|
Solar-log Search vendor "Solar-log" | Solar-log 300 Firmware Search vendor "Solar-log" for product "Solar-log 300 Firmware" | 3.5.2-85 Search vendor "Solar-log" for product "Solar-log 300 Firmware" and version "3.5.2-85" | - |
Affected
| in | Solar-log Search vendor "Solar-log" | Solar-log 300 Search vendor "Solar-log" for product "Solar-log 300" | - | - |
Safe
|
Solar-log Search vendor "Solar-log" | Solar-log 500 Firmware Search vendor "Solar-log" for product "Solar-log 500 Firmware" | 2.8.4-56 Search vendor "Solar-log" for product "Solar-log 500 Firmware" and version "2.8.4-56" | - |
Affected
| in | Solar-log Search vendor "Solar-log" | Solar-log 500 Search vendor "Solar-log" for product "Solar-log 500" | - | - |
Safe
|
Solar-log Search vendor "Solar-log" | Solar-log 500 Firmware Search vendor "Solar-log" for product "Solar-log 500 Firmware" | 3.5.2-85 Search vendor "Solar-log" for product "Solar-log 500 Firmware" and version "3.5.2-85" | - |
Affected
| in | Solar-log Search vendor "Solar-log" | Solar-log 500 Search vendor "Solar-log" for product "Solar-log 500" | - | - |
Safe
|
Solar-log Search vendor "Solar-log" | Solar-log 800e Firmware Search vendor "Solar-log" for product "Solar-log 800e Firmware" | 2.8.4-56 Search vendor "Solar-log" for product "Solar-log 800e Firmware" and version "2.8.4-56" | - |
Affected
| in | Solar-log Search vendor "Solar-log" | Solar-log 800e Search vendor "Solar-log" for product "Solar-log 800e" | - | - |
Safe
|
Solar-log Search vendor "Solar-log" | Solar-log 800e Firmware Search vendor "Solar-log" for product "Solar-log 800e Firmware" | 3.5.2-85 Search vendor "Solar-log" for product "Solar-log 800e Firmware" and version "3.5.2-85" | - |
Affected
| in | Solar-log Search vendor "Solar-log" | Solar-log 800e Search vendor "Solar-log" for product "Solar-log 800e" | - | - |
Safe
|
Solar-log Search vendor "Solar-log" | Solar-log 1000 Firmware Search vendor "Solar-log" for product "Solar-log 1000 Firmware" | 2.8.4-56 Search vendor "Solar-log" for product "Solar-log 1000 Firmware" and version "2.8.4-56" | - |
Affected
| in | Solar-log Search vendor "Solar-log" | Solar-log 1000 Search vendor "Solar-log" for product "Solar-log 1000" | - | - |
Safe
|
Solar-log Search vendor "Solar-log" | Solar-log 1000 Firmware Search vendor "Solar-log" for product "Solar-log 1000 Firmware" | 3.5.2-85 Search vendor "Solar-log" for product "Solar-log 1000 Firmware" and version "3.5.2-85" | - |
Affected
| in | Solar-log Search vendor "Solar-log" | Solar-log 1000 Search vendor "Solar-log" for product "Solar-log 1000" | - | - |
Safe
|
Solar-log Search vendor "Solar-log" | Solar-log 1000 Pm\+ Firmware Search vendor "Solar-log" for product "Solar-log 1000 Pm\+ Firmware" | 2.8.4-56 Search vendor "Solar-log" for product "Solar-log 1000 Pm\+ Firmware" and version "2.8.4-56" | - |
Affected
| in | Solar-log Search vendor "Solar-log" | Solar-log 1000 Pm\+ Search vendor "Solar-log" for product "Solar-log 1000 Pm\+" | - | - |
Safe
|
Solar-log Search vendor "Solar-log" | Solar-log 1000 Pm\+ Firmware Search vendor "Solar-log" for product "Solar-log 1000 Pm\+ Firmware" | 3.5.2-85 Search vendor "Solar-log" for product "Solar-log 1000 Pm\+ Firmware" and version "3.5.2-85" | - |
Affected
| in | Solar-log Search vendor "Solar-log" | Solar-log 1000 Pm\+ Search vendor "Solar-log" for product "Solar-log 1000 Pm\+" | - | - |
Safe
|
Solar-log Search vendor "Solar-log" | Solar-log 1200 Firmware Search vendor "Solar-log" for product "Solar-log 1200 Firmware" | 2.8.4-56 Search vendor "Solar-log" for product "Solar-log 1200 Firmware" and version "2.8.4-56" | - |
Affected
| in | Solar-log Search vendor "Solar-log" | Solar-log 1200 Search vendor "Solar-log" for product "Solar-log 1200" | - | - |
Safe
|
Solar-log Search vendor "Solar-log" | Solar-log 1200 Firmware Search vendor "Solar-log" for product "Solar-log 1200 Firmware" | 3.5.2-85 Search vendor "Solar-log" for product "Solar-log 1200 Firmware" and version "3.5.2-85" | - |
Affected
| in | Solar-log Search vendor "Solar-log" | Solar-log 1200 Search vendor "Solar-log" for product "Solar-log 1200" | - | - |
Safe
|
Solar-log Search vendor "Solar-log" | Solar-log 2000 Firmware Search vendor "Solar-log" for product "Solar-log 2000 Firmware" | 2.8.4-56 Search vendor "Solar-log" for product "Solar-log 2000 Firmware" and version "2.8.4-56" | - |
Affected
| in | Solar-log Search vendor "Solar-log" | Solar-log 2000 Search vendor "Solar-log" for product "Solar-log 2000" | - | - |
Safe
|
Solar-log Search vendor "Solar-log" | Solar-log 2000 Firmware Search vendor "Solar-log" for product "Solar-log 2000 Firmware" | 3.5.2-85 Search vendor "Solar-log" for product "Solar-log 2000 Firmware" and version "3.5.2-85" | - |
Affected
| in | Solar-log Search vendor "Solar-log" | Solar-log 2000 Search vendor "Solar-log" for product "Solar-log 2000" | - | - |
Safe
|