Required CVE Record Information
Description
eVisitorPass could allow a local attacker to gain elevated privileges on the system, caused by an error with the Virtual Keyboard Help Dialog. By visiting the kiosk and removing the program from fullscreen, an attacker could exploit this vulnerability using the terminal to launch the command prompt.
CVSS 1 Total
Score | Severity | Version | Vector String |
---|---|---|---|
8.4 | HIGH | 3.0 | CVSS:3.0/UI:N/S:U/I:H/AV:L/A:H/PR:N/AC:L/C:H/E:U/RL:O/RC:C |
References 1 Total
Updated:
This container includes required additional information provided by the CVE Program for this vulnerability.
References 1 Total
- exchange.xforce.ibmcloud.com: evisitorpass-help-dialog-cve201817495-pri-esc (149655) vdb-entryx_transferred