6.6
CVSSv3

CVE-2017-5634

Published: 09/02/2017 Updated: 03/10/2019
CVSS v2 Base Score: 7.2 | Impact Score: 10 | Exploitability Score: 3.9
CVSS v3 Base Score: 6.6 | Impact Score: 5.9 | Exploitability Score: 0.7
VMScore: 641
Vector: AV:L/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

The Norwegian Air Shuttle (aka norwegian.com) airline kiosk allows physically proximate malicious users to bypass the intended "Please select booking identification" UI step, and obtain administrative privileges and network access on the underlying Windows OS, by accessing a touch-screen print icon to manipulate the print dialog.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

norwegian-air norwegian air kiosk -