CVE-2018-17493 describes a local privilege escalation vulnerability in eVisitorPass, specifically affecting Threshold Security's eVisitorPass product. An attacker could exploit an error with the Fullscreen button on the kiosk interface to close the program and launch other system processes, leading to high impact on confidentiality, integrity, and availability. While rated with a CVSS score of 7.8 (High), there is no evidence of active exploitation, no known public exploit code (Metasploit, Nuclei, ExploitDB), and limited community discussion or media coverage beyond a single article.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
1.5.5.2CPE matchmatch criteria | cpe:2.3:a:thresholdsecurity:evisitorpass:1.5.5.2:*:*:*:*:*:*:* |
CVSS version used by this source: 3.0
CVSS:3.0/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.2 Bluesky, 0.1 Mastodon, and 0.2 GitHub mentions.
The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.