PT-2019-18163 · Cscape · Cscape

Published

2019-02-20

·

Updated

2022-11-30

·

CVE-2019-6555

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Cscape versions 9.80 SP4 and prior
Description An improper input validation issue may be exploited by processing specially crafted POC files, potentially allowing an attacker to read confidential information and remotely execute arbitrary code.
Recommendations For versions 9.80 SP4 and prior, at the moment, there is no information about a newer version that contains a fix for this vulnerability.

RCE

Weakness Enumeration

Related Identifiers

CVE-2019-6555
ZDI-19-226
ZDI-19-227

Affected Products

Cscape