CVE-2017-10818: Intercom Malion

Critical severity, CVSS 9.8. EPSS: 1.8% chance of exploitation in the next 30 days.

MaLion for Windows and Mac versions 3.2.1 to 5.2.1 uses a hardcoded cryptographic key which may allow an attacker to alter the connection settings of Terminal Agent and spoof the Relay Service.

Affected products

  • Intercom Malion: from 3.2.1, up to and including 5.2.1

Published 2017-08-04. Last modified 2026-06-17.