Vulnerabilities > CVE-2017-17759 - Unspecified vulnerability in Conarc Ichannel

047910
CVSS 9.8 - CRITICAL
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
HIGH
Integrity impact
HIGH
Availability impact
HIGH
network
low complexity
conarc
critical
exploit available

Summary

Conarc iChannel allows remote attackers to obtain sensitive information, modify the configuration, or cause a denial of service (by deleting the configuration) via a wc.dll?wwMaint~EditConfig request (which reaches an older version of a West Wind Web Connection HTTP service).

Vulnerable Configurations

Part Description Count
Application
Conarc
1

Exploit-Db

descriptionConarc iChannel - Improper Access Restrictions. CVE-2017-17759. Webapps exploit for Multiple platform
fileexploits/multiple/webapps/43377.txt
idEDB-ID:43377
last seen2018-01-10
modified2017-12-20
platformmultiple
port
published2017-12-20
reporterExploit-DB
sourcehttps://www.exploit-db.com/download/43377/
titleConarc iChannel - Improper Access Restrictions
typewebapps