ZeroHour

CVE-2019-19167

CVSS 3.1
9.8 critical
EPSS
<1%p53
Published
()
Modified
Description

Tobesoft Nexacro v2019.9.25.1 and earlier version have an arbitrary code execution vulnerability by using method supported by Nexacro14 ActiveX Control. It allows attacker to cause remote code execution.

Vendors
tobesoft
Products
nexacro
Weakness
CWE-494
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.