CVE-2017-6894 describes a privilege escalation vulnerability in FlexNet Manager Suite releases 2015 R2 SP3 and earlier, including FlexNet Manager Platform 9.2 and earlier, specifically within its inventory gathering components. This vulnerability allows a local attacker to execute actions with elevated privileges on the affected system. With a CVSS score of 7.8 (High), it presents a significant risk due to its low attack complexity and the potential for high impact on confidentiality, integrity, and availability. There is currently no public exploit code available (Metasploit, Nuclei, ExploitDB), and it has not been added to CISA's KEV catalog, indicating no known active exploitation. Community discussion and media coverage for this CVE are minimal.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
<= 9.2CPE matchmatch criteria | cpe:2.3:a:flexera:flexnet_manager:*:*:*:*:*:*:*:* | ||
Range not provided by sourceCPE matchmatch criteria | cpe:2.3:a:flexera:flexnet_manager_suite_2015:-:*:*:*:*:*:*:* | ||
r2CPE matchmatch criteria | cpe:2.3:a:flexera:flexnet_manager_suite_2015:r2:-:*:*:*:*:*:* | ||
r2CPE matchmatch criteria | cpe:2.3:a:flexera:flexnet_manager_suite_2015:r2:sp1:*:*:*:*:*:* | ||
r2CPE matchmatch criteria | cpe:2.3:a:flexera:flexnet_manager_suite_2015:r2:sp2:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.2 Bluesky, 0.1 Mastodon, and 0.2 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.