Lobby Track
Vendor:
First CVE: Mar 21, 2019 · Active for 7 years
7
Total CVEs
More Total CVEs than 85% of tracked products
7.0
Avg CVEs / Year
Higher CVE frequency than 93% of tracked products
6.7
Avg CVSS
Higher Avg CVSS than 39% of tracked products
0.0%
KEV Rate
Bottom 1%
Trends Over Time
The number and severity of CVEs published that impact Lobby Track over time
Volume of CVEsAvg CVSS Base Score
First CVE
Mar 21, 2019
7 years ago
Most Recent CVE
Mar 21, 2019
2,685 days ago
CVE Severity & Scoring
Lobby Track7 CVEs
43%
57%
All CVEs352,785 CVEs
45%
40%
11%
MediumHigh
Attack Vector
Local7 (100.0%)
Network0 (0.0%)
Unknown0 (0.0%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low7 (100.0%)
High0 (0.0%)
Unknown0 (0.0%)
User Interaction
None7 (100.0%)
Unknown0 (0.0%)
Required0 (0.0%)
Privileges Required
Low7 (100.0%)
High0 (0.0%)
None0 (0.0%)
Unknown0 (0.0%)
Top CVEs
Signals from CVEs in this product scope (7 CVEs).
7 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2018-17485HIGH Lobby Track Desktop contains default administrative credentials. An attacker could exploit this vulnerability to gain full access to the application. | Mar 21, 2019 | 7.8 | 25 | NO | NO |
CVE-2018-17488HIGH Lobby Track Desktop could allow a local attacker to gain elevated privileges on the system, caused by an error in the printer dialog. By visiting the kiosk and accessing the print | Mar 21, 2019 | 7.8 | 24 | NO | NO |
CVE-2018-17487HIGH Lobby Track Desktop could allow a local attacker to gain elevated privileges on the system, caused by an error in the printer dialog. By visiting the kiosk and signing in as a visi | Mar 21, 2019 | 7.8 | 23 | NO | NO |
CVE-2018-17484HIGH Lobby Track Desktop could allow a local attacker to obtain sensitive information, caused by an error in Sample Database.mdb database while in kiosk mode. By using attack vectors ou | Mar 21, 2019 | 7.1 | 22 | NO | NO |
CVE-2018-17486MEDIUM Lobby Track Desktop could allow a local attacker to bypass security restrictions, caused by an error in the find visitor function while in kiosk mode. By visiting the kiosk and sel | Mar 21, 2019 | 5.5 | 19 | NO | NO |
CVE-2018-17483MEDIUM Lobby Track Desktop could allow a local attacker to obtain sensitive information, caused by an error in Reports while in kiosk mode. By visiting the kiosk and viewing the driver's | Mar 21, 2019 | 5.5 | 19 | NO | NO |
CVE-2018-17482MEDIUM Lobby Track Desktop could allow a local attacker to obtain sensitive information, caused by an error in Reports while in kiosk mode. By visiting the kiosk and clicking on reports, | Mar 21, 2019 | 5.5 | 19 | NO | NO |
Exploit Exposure
Signals from CVEs in this product scope (7 CVEs).
CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%
Social Chatter
Signals from CVEs in this product scope (7 CVEs).
Media Mentions
Signals from CVEs in this product scope (7 CVEs).
Top CNAs Publishing CVEs For Lobby Track
Top CWEs
Versions
| Version | CVE Count | Avg CVSS | Avg EPSS | KEV | Exploits |
|---|---|---|---|---|---|
| 8.2.186 | 7 | 6.7 | 0.3% | 0 | 0 |