Vulnerabilities > CVE-2017-17759 - Unspecified vulnerability in Conarc Ichannel

047910
CVSS 10.0 - CRITICAL
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
COMPLETE
Integrity impact
COMPLETE
Availability impact
COMPLETE
network
low complexity
conarc
critical
exploit available

Summary

Conarc iChannel allows remote attackers to obtain sensitive information, modify the configuration, or cause a denial of service (by deleting the configuration) via a wc.dll?wwMaint~EditConfig request (which reaches an older version of a West Wind Web Connection HTTP service).

Vulnerable Configurations

Part Description Count
Application
Conarc
1

Exploit-Db

descriptionConarc iChannel - Improper Access Restrictions. CVE-2017-17759. Webapps exploit for Multiple platform
fileexploits/multiple/webapps/43377.txt
idEDB-ID:43377
last seen2018-01-10
modified2017-12-20
platformmultiple
port
published2017-12-20
reporterExploit-DB
sourcehttps://www.exploit-db.com/download/43377/
titleConarc iChannel - Improper Access Restrictions
typewebapps