HIGH

CVE-2017-12945

CVSS v3

8.8

HIGH

EPSS Score

26.4%

exploit probability

CISA KEV

No

known exploited

Exploitation

SSVC status

Description

Insufficient validation of user-supplied input for the Solstice Pod before 2.8.4 networking configuration enables authenticated attackers to execute arbitrary commands as root.

Technical details

Published
11/27/2019
Exploit-DB
EDB-47722

Frequently asked questions

What is CVE-2017-12945?

Insufficient validation of user-supplied input for the Solstice Pod before 2.8.4 networking configuration enables authenticated attackers to execute arbitrary commands as root.

Is CVE-2017-12945 actively exploited?

Active exploitation of CVE-2017-12945 has not been confirmed. The EPSS score is 26.4%, indicating the estimated probability of exploitation in the next 30 days.

What is the CVSS score for CVE-2017-12945?

CVE-2017-12945 has a CVSS v3 base score of 8.8 (HIGH severity).

Is CVE-2017-12945 affecting your environment?

Use isMalicious to check if any of your IPs or domains are associated with this vulnerability's IOCs.

Other 2017 vulnerabilities worth triaging

Ranked by exploit probability (EPSS).