i-SENS SmartLog Diabetes Management Software CVE-2017-13993 Untrusted Search Path vulnerability
BID:100659
CVE-2017-13993 |Info
i-SENS SmartLog Diabetes Management Software CVE-2017-13993 Untrusted Search Path vulnerability
| Bugtraq ID: | 100659 |
| Class: | Input Validation Error |
| CVE: |
CVE-2017-13993 |
| Remote: | No |
| Local: | Yes |
| Published: | Sep 07 2017 12:00AM |
| Updated: | Sep 07 2017 12:00AM |
| Credit: | Mark Cross |
| Vulnerable: |
i-SENS SmartLog Diabetes Management Software 2.4.0 |
| Not Vulnerable: |
i-SENS SmartLog Diabetes Management Software 2.4.1 |
Discussion
i-SENS SmartLog Diabetes Management Software CVE-2017-13993 Untrusted Search Path vulnerability
i-SENS SmartLog Diabetes Management Software is prone to to an unspecified untrusted search path vulnerability.
A local attacker can exploit this issue to execute arbitrary code in the context of the user running the affected application.
i-SENS SmartLog Diabetes Management Software is prone to to an unspecified untrusted search path vulnerability.
A local attacker can exploit this issue to execute arbitrary code in the context of the user running the affected application.
Exploit / POC
i-SENS SmartLog Diabetes Management Software CVE-2017-13993 Untrusted Search Path vulnerability
Currently, we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Currently, we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution / Fix
i-SENS SmartLog Diabetes Management Software CVE-2017-13993 Untrusted Search Path vulnerability
Solution:
Updates are available. Please see the references or vendor advisory for more information.
Solution:
Updates are available. Please see the references or vendor advisory for more information.
References
i-SENS SmartLog Diabetes Management Software CVE-2017-13993 Untrusted Search Path vulnerability
References:
References: