PT-2022-7887 · Weka · Weka Interest Security Scanner

Marc Ruef

·

Published

2022-03-28

·

Updated

2024-08-05

·

CVE-2017-20014

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions WEKA INTEREST Security Scanner versions up to 1.8
Description A problematic vulnerability has been found in the Webspider component of WEKA INTEREST Security Scanner. The issue allows for denial of service through manipulation of an unknown input, requiring local access to exploit. The exploit has been disclosed to the public. This vulnerability only affects products that are no longer supported by the maintainer.
Recommendations For WEKA INTEREST Security Scanner versions up to 1.8, consider disabling the Webspider component to minimize the risk of exploitation, as these versions are no longer supported by the maintainer. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Improper Resource Release

Weakness Enumeration

Related Identifiers

CVE-2017-20014

Affected Products

Weka Interest Security Scanner