PT-2022-7886 · Weka · Weka Interest Security Scanner

Marc Ruef

·

Published

2022-03-28

·

Updated

2024-08-05

·

CVE-2017-20013

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions WEKA INTEREST Security Scanner versions up to 1.8
Description A problematic vulnerability was found in the Stresstest Configuration Handler of the WEKA INTEREST Security Scanner, leading to a local denial of service through manipulation. The exploit has been disclosed to the public and may be used. This issue only affects products that are no longer supported by the maintainer.
Recommendations For WEKA INTEREST Security Scanner versions up to 1.8, consider disabling the Stresstest Configuration Handler as a temporary workaround to minimize the risk of exploitation. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Improper Resource Release

Weakness Enumeration

Related Identifiers

CVE-2017-20013

Affected Products

Weka Interest Security Scanner