CVE-2017-12939

EUVD-2017-4463
A Remote Code Execution vulnerability was identified in all Windows versions of Unity Editor, e.g., before 5.3.8p2, 5.4.x before 5.4.5p5, 5.5.x before 5.5.4p3, 5.6.x before 5.6.3p1, and 2017.x before 2017.1.0p4.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
9.8 CRITICAL
NETWORK
LOW
NONE
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Base Score
CVSS 3.x
EPSS Score
Percentile: 85%
Affected Products (NVD)
VendorProductVersion
unity3dunity_editor
5.3.8
unity3dunity_editor
5.4.0
unity3dunity_editor
5.4.1
unity3dunity_editor
5.4.2
unity3dunity_editor
5.4.3
unity3dunity_editor
5.4.4
unity3dunity_editor
5.5.0
unity3dunity_editor
5.5.1
unity3dunity_editor
5.5.2
unity3dunity_editor
5.5.3
unity3dunity_editor
5.6.0
unity3dunity_editor
5.6.1
unity3dunity_editor
5.6.2
unity3dunity_editor
2017.1.0
𝑥
= Vulnerable software versions