CVE-2017-3087 is an information disclosure vulnerability affecting Adobe Captivate versions 9 and earlier, stemming from an abuse of its quiz reporting feature. With a CVSS v3 score of 7.5 (HIGH), this vulnerability is network-exploitable with low complexity, requiring no user interaction or privileges, and could lead to significant data confidentiality loss. While no active exploitation is confirmed and public exploit intelligence (Metasploit, Nuclei, ExploitDB) is absent, the vulnerability has garnered some community discussion and media coverage, indicating awareness.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
<= 9.0CPE matchmatch criteria | cpe:2.3:a:adobe:captivate:*:*:*:*:*:*:*:* |
CVSS version used by this source: 3.0
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
No social media mentions found for this CVE.
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.1 Mastodon, and 0.4 GitHub mentions.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.