ZeroHour

CVE-2019-19893

PoC
CVSS 3.1
7.5 high
EPSS
3%p84
Published
()
Modified
Description

In IXP EasyInstall 6.2.13723, there is Directory Traversal on TCP port 8000 via the Engine Service by an unauthenticated attacker, who can access the server's filesystem with the access rights of NT AUTHORITY\SYSTEM.

Vendors
ixpdata
Products
easyinstall
Weakness
CWE-22
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

In the news

No ingested article mentions this CVE yet.