Critical severity9.8NVD Advisory· Published Mar 22, 2017· Updated May 13, 2026
CVE-2017-6972
CVE-2017-6972
Description
AlienVault USM and OSSIM before 5.3.7 and NfSen before 1.3.8 have an error in privilege dropping and unnecessarily execute the NfSen Perl code as root, aka AlienVault ID ENG-104945, a different vulnerability than CVE-2017-6970 and CVE-2017-6971.
Affected products
3- cpe:2.3:a:alienvault:unified_security_management:*:*:*:*:*:*:*:*Range: <=5.3.6
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
4- www.securityfocus.com/bid/97016nvdThird Party AdvisoryVDB Entry
- sourceforge.net/p/nfsen/news/2017/01/nfsen-138-released---security-fix/nvdThird Party Advisory
- www.alienvault.com/forums/discussion/8698nvdVendor Advisory
- www.exploit-db.com/exploits/42314/nvd
News mentions
0No linked articles in our index yet.