CRITICAL · 9.9

CVE-2017-12822

Remote enabling and disabling admin interface in Gemalto's HASP SRM, Sentinel HASP and Sentinel LDK products prior to Sentinel LDK RTE version 7.55 leads to new attack vectors.

Vulnerability Description

Remote enabling and disabling admin interface in Gemalto's HASP SRM, Sentinel HASP and Sentinel LDK products prior to Sentinel LDK RTE version 7.55 leads to new attack vectors.

CVSS Score

9.9

CRITICAL

CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:L/A:L
Attack Vector
NETWORK
Attack Complexity
LOW
Privileges Required
NONE
User Interaction
NONE
Scope
CHANGED
Confidentiality
HIGH
Integrity
LOW
Availability
LOW

Affected Products

VendorProductVersions
SentinelSentinel Ldk Rte Firmware<= 7.50

Related Weaknesses (CWE)

References

FAQ

What is CVE-2017-12822?

CVE-2017-12822 is a vulnerability with a CVSS score of 9.9 (CRITICAL). Remote enabling and disabling admin interface in Gemalto's HASP SRM, Sentinel HASP and Sentinel LDK products prior to Sentinel LDK RTE version 7.55 leads to new attack vectors.

How severe is CVE-2017-12822?

CVE-2017-12822 has been rated CRITICAL with a CVSS base score of 9.9/10. This is considered a critical vulnerability requiring immediate attention.

Is there a patch for CVE-2017-12822?

Check the references section above for vendor advisories and patch information. Affected products include: Sentinel Sentinel Ldk Rte Firmware.