9.3
CVSSv2

CVE-2017-2286

Published: 02/08/2017 Updated: 23/08/2017
CVSS v2 Base Score: 9.3 | Impact Score: 10 | Exploitability Score: 8.6
CVSS v3 Base Score: 7.8 | Impact Score: 5.9 | Exploitability Score: 1.8
VMScore: 828
Vector: AV:N/AC:M/Au:N/C:C/I:C/A:C

Vulnerability Summary

Untrusted search path vulnerability in NFC Port Software Version 5.5.0.6 and previous versions (for RC-S310, RC-S320, RC-S330, RC-S370, RC-S380, RC-S380/S), NFC Port Software Version 5.3.6.7 and previous versions (for RC-S320, RC-S310/J1C, RC-S310/ED4C), PC/SC Activator for Type B Ver.1.2.1.0 and previous versions, SFCard Viewer 2 Ver.2.5.0.0 and previous versions, NFC Net Installer Ver.1.1.0.0 and previous versions allows an malicious user to gain privileges via a Trojan horse DLL in an unspecified directory.

Vulnerable Product Search on Vulmon Subscribe to Product

sony nfc_port_firmware

sony pc\\/sc activator for type b

sony sfcard viewer 2 2.5.0.0

sony nfc net installer