PT-2019-15298 · Reliable Controls · Mach-Prowebcom/Sys

Gjoko Krstic

·

Publicado

2019-12-24

·

Atualizado

2020-01-07

·

CVE-2019-18249

CVSS v3.1

6.1

Média

VetorAV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
Name of the Vulnerable Software and Affected Versions Reliable Controls MACH-ProWebCom/Sys versions prior to 2.15 (Firmware versions prior to 8.26.4)
Description The issue allows an attacker to execute commands on behalf of the user when an authenticated user clicks on a malicious link.
Recommendations For versions prior to 2.15 (Firmware versions prior to 8.26.4), update to version 2.15 or later (Firmware version 8.26.4 or later) to resolve the issue.

Correção

XSS

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2019-18249

Produtos afetados

Mach-Prowebcom/Sys