S4E just found a high-severity finding from top 10 tcp port service scan
PlatformPlansPartners
Resources
ToolsBlogDocs
Sign Up →
high·Product Based Web Vulnerabilities·Updated Jan 3, 2024

CVE-2017-16806 Scanner

Detects 'Directory Traversal' vulnerability in Ulterius affects v. before 1.9.5.0.

Est. Time~10 seconds
Scan TypeSingle Scan
Targetsurl
CostFree
2.5k
Times Used
continuous scan runs
4.1k
Continuously Checked
assets under CS
20
Vulnerabilities Found
confirmed findings
References
CVECVE-2017-16806
7.5
CVSS

The Process function in RemoteTaskServer/WebServer/HttpServer.cs in Ulterius before 1.9.5.0 allows HTTP server directory traversal.

Attack Vector
-
Privileges Req.
-
User Interaction
-
Affected
n/aby n/a
n/a
Updated Aug 5, 2026View on NVD →
Detail

Ulterius is a remote desktop management software utilized for managing virtual machines and systems remotely. The tool is designed to provide system administrators with ease in handling multiple systems at once and offers a user-friendly interface for remote management. With its powerful features, Ulterius helps with server management, troubleshooting, and system maintenance.

CVE-2017-16806 is a vulnerability detected in Ulterius before the 1.9.5.0 version. This vulnerability was found in the Process function within the RemoteTaskServer, WebServer, and HttpServer modules, that failed to prevent a server directory traversal. This allowed attackers to access and modify files beyond their intended scope and could potentially result in a complete system compromise.

The exploitation of this vulnerability can be highly damaging to the compromised system. Attackers could gain access to sensitive information and manipulate data, which could lead to a massive financial loss for enterprises. An unpatched system could allow attackers to install malware and use the compromised system as a jumping-off point to launch additional attacks on the network.

s4e.io is a platform that provides users with information regarding vulnerabilities present in their digital assets. With its pro features, enterprises can quickly and easily identify vulnerabilities and take the necessary actions to mitigate them, thereby minimizing risks. By utilizing this platform, businesses can stay ahead of the ever-evolving security threats and ensure their systems' safety. 

REFERENCES

Solution Advice
  • Update the Ulterius software to the latest version.
  • Filter incoming traffic so that only authorized traffic is allowed.
  • Adjust file and directory permissions to limit access to sensitive information.
  • Implement a strong password policy that includes the use of two-factor authentication.
  • Regularly scan systems for vulnerabilities and apply patches as soon as they become available.

Get AI-powered remediation steps tailored to your asset.

Try AI Solutions →

Check your infrastructure.
Right now.

11,000+ scanners. Free to start. No credit card required.

CVE-2017-16806 scanner - Directory Traversal vulnerability in Ulterius | S4E