PT-2017-16634 · Microsoft · Windows Os

Bugreporter

·

Published

2017-02-09

·

Updated

2019-10-03

·

CVE-2017-5634

CVSS v2.0

7.2

High

VectorAV:L/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Norwegian Air Shuttle airline kiosk (affected versions not specified)
Description The issue allows physically proximate attackers to bypass the intended UI step and obtain administrative privileges and network access on the underlying Windows OS. This is achieved by accessing a touch-screen print icon to manipulate the print dialog.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exposure of Resource to Wrong Sphere

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2017-5634

Affected Products

Windows Os