Описание
Diebold Nixdorf Vynamic Security Suite (VSS) before 3.3.0 SR10 fails to validate /etc/mtab during the Pre-Boot Authorization (PBA) process. This can be exploited by a physical attacker who is able to manipulate the contents of the system's hard disk.
Ссылки
- ExploitThird Party Advisory
- Vendor Advisory
Уязвимые конфигурации
Конфигурация 1Версия до 3.3.0sr10 (исключая)
cpe:2.3:a:dieboldnixdorf:vynamic_security_suite:*:*:*:*:*:*:*:*
EPSS
Процентиль: 46%
0.00233
Низкий
6.8 Medium
CVSS3
Дефекты
CWE-354
CWE-354
Связанные уязвимости
CVSS3: 6.8
github
больше 1 года назад
Diebold Nixdorf Vynamic Security Suite (VSS) before 3.3.0 SR10 fails to validate /etc/mtab during the Pre-Boot Authorization (PBA) process. This can be exploited by a physical attacker who is able to manipulate the contents of the system's hard disk.
EPSS
Процентиль: 46%
0.00233
Низкий
6.8 Medium
CVSS3
Дефекты
CWE-354
CWE-354