Vulnerability Details CVE-2017-17739
The BrightSign Digital Signage (4k242) device (Firmware 6.2.63 and below) has directory traversal via the /storage.html rp parameter, allowing an attacker to read or write to files.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.213
EPSS Ranking 95.4%
CVSS Severity
CVSS v3 Score 9.8
CVSS v2 Score 7.5
Products affected by CVE-2017-17739
-
cpe:2.3:h:brightsign:4k242:-
-
cpe:2.3:o:brightsign:4k242_firmware:6.2.63