RSS   Vulnerabilities for 'Displayview click'   RSS

2018-07-24
 
CVE-2017-3210

CWE-16
 

 
Applications developed using the Portrait Display SDK, versions 2.30 through 2.34, default to insecure configurations which allow arbitrary code execution. A number of applications developed using the Portrait Displays SDK do not use secure permissions when running. These applications run the component pdiservice.exe with NT AUTHORITY/SYSTEM permissions. This component is also read/writable by all Authenticated Users. This allows local authenticated attackers to run arbitrary code with SYSTEM privileges. The following applications have been identified by Portrait Displays as affected: Fujitsu DisplayView Click: Version 6.0 and 6.01. The issue was fixed in Version 6.3. Fujitsu DisplayView Click Suite: Version 5. The issue is addressed by patch in Version 5.9. HP Display Assistant: Version 2.1. The issue was fixed in Version 2.11. HP My Display: Version 2.0. The issue was fixed in Version 2.1. Philips Smart Control Premium: Versions 2.23, 2.25. The issue was fixed in Version 2.26.

 

 >>> Vendor: Fujitsu 48 Products
Chocoa
Uxp v
Siemens networker
Netshelter fw
Netshelter fw-l
Netshelter fw-m
Netshelter fw-p
Myweb portal office
Serverview
Interstage application server
Interstage apworks
Fence
Systemwalker desktop encryption
Primergy bx300
Interstage studio
Interstage application server enterprise
Interstage application server standard j
Interstage apworks enterprise
Interstage apworks standard j
Interstage studio enterprise
Interstage studio standard j
Interstage application server plus
Interstage apworks modelers j
Interstage business application server
Interstage smart repository
Interstage application server plus developer
Interstage business application server enterprise
Web based admin view
Systemcastwizard lite
Enhanced support facility
Jasmine2000
E-pares
Serverview operations manager
Arrows me f-11d
Arrows tab lte f-01d
Arrows x lte f-05d
Regza phone t-01d
Arrows kiss f-03d
F-12c
Fence-explorer
Displayview click
Displayview click suite
Gk900 firmware
Lx901 firmware
Paperstream ip (twain)
Arrows nx f005-f firmware
Serverview remote management
Plugfree network


Copyright 2024, cxsecurity.com

 

Back to Top