CVE-2017-18001 EXPLOIT
9.8
CRITICAL · CVSS 3.0 · EPSS 13.8% (pctl 96)
Patch early
A public exploit exists.
Description
Trustwave Secure Web Gateway (SWG) through 11.8.0.27 allows remote attackers to append an arbitrary public key to the device's SSH Authorized Keys data, and consequently obtain remote root access, via the publicKey parameter to the /sendKey URI.
Scoring
| CVSS | 9.8 (CRITICAL, v3.0) |
|---|---|
| Vector | CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H |
| EPSS | 13.82% — more likely to be exploited than 96% of all CVEs |
| Weakness | CWE-306 |
| On CISA KEV | no |
| Public exploit | yes |
| Published | 2017-12-31 |
| Last modified | 2026-06-17 |
Affected (1)
| Vendor | Product |
|---|---|
| trustwave | secure web gateway |
Public exploits
| Source | Title | Date |
|---|---|---|
| exploit-db | Trustwave SWG 11.8.0.27 - SSH Unauthorized Access | 2017-12-26 |
References
- http://seclists.org/fulldisclosure/2017/Dec/88
- https://blogs.securiteam.com/index.php/archives/3550
- https://www.exploit-db.com/exploits/44047/
- https://www.trustwave.com/Resources/Trustwave-Software-Updates/Important-Security-Update-for-Trustwave-Secure-Web-Gateway/
- http://seclists.org/fulldisclosure/2017/Dec/88
- https://blogs.securiteam.com/index.php/archives/3550
- https://www.exploit-db.com/exploits/44047/
- https://www.trustwave.com/Resources/Trustwave-Software-Updates/Important-Security-Update-for-Trustwave-Secure-Web-Gateway/
→ the Explorer · watch your stack · NVD