CVE-2017-12939

A Remote Code Execution vulnerability was identified in all Windows versions of Unity Editor, e.g., before 5.3.8p2, 5.4.x before 5.4.5p5, 5.5.x before 5.5.4p3, 5.6.x before 5.6.3p1, and 2017.x before 2017.1.0p4.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
9.8 CRITICAL
NETWORK
LOW
NONE
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
mitreCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 84%
VendorProductVersion
unity3dunity_editor
5.3.8
unity3dunity_editor
5.4.0
unity3dunity_editor
5.4.1
unity3dunity_editor
5.4.2
unity3dunity_editor
5.4.3
unity3dunity_editor
5.4.4
unity3dunity_editor
5.5.0
unity3dunity_editor
5.5.1
unity3dunity_editor
5.5.2
unity3dunity_editor
5.5.3
unity3dunity_editor
5.6.0
unity3dunity_editor
5.6.1
unity3dunity_editor
5.6.2
unity3dunity_editor
2017.1.0
𝑥
= Vulnerable software versions