CVE-2017-6516 is a Local Privilege Escalation vulnerability affecting MagniComp Sysinfo versions prior to 10-H64 on Linux and UNIX platforms. The vulnerability stems from the setuid-to-root access required by parts of SysInfo, which a local attacker can exploit to gain a root shell. With a CVSS score of 6.7 (MEDIUM) and a FAUCET Risk Score of 97/100, this vulnerability allows an authenticated local attacker to achieve high impact on confidentiality, integrity, and availability. Exploit code is publicly available, including a Metasploit module, though there is no evidence of active exploitation in the wild and minimal community discussion or media coverage.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
<= 10-h62CPE matchmatch criteria | cpe:2.3:a:magnicomp:sysinfo:*:*:*:*:*:*:*:* |
CVSS version used by this source: 3.0
CVSS:3.0/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
No social media mentions found for this CVE.
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.0 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.