PT-2017-11523 · Malion · Malion For Mac+2
Muneaki Nishimura
·
Published
2017-08-04
·
Updated
2017-08-15
·
CVE-2017-10815
CVSS v3.1
8.1
High
| Vector | AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
MaLion for Windows versions 5.2.1 and earlier
MaLion for Mac versions 4.0.1 through 5.2.1
Description
The issue allows remote attackers to bypass authentication and execute arbitrary commands or operations on Terminal Agent when the "Remote Control" component is installed.
Recommendations
For MaLion for Windows versions 5.2.1 and earlier, uninstall or disable the "Remote Control" component until a fix is available.
For MaLion for Mac versions 4.0.1 through 5.2.1, uninstall or disable the "Remote Control" component until a fix is available.
Fix
Improper Authentication
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Malion For Mac
Malion For Windows
Terminal Agent