PT-2020-10288 · Ixp · Ixp Easyinstall

Published

2020-01-23

·

Updated

2021-07-21

·

CVE-2019-19895

CVSS v3.1

8.8

High

VectorAC:L/AV:L/A:H/C:H/I:H/PR:L/S:C/UI:N
Name of the Vulnerable Software and Affected Versions IXP EasyInstall version 6.2.13723
Description The issue allows for lateral movement using the Agent Service against other users on a client system. An authenticated attacker can modify the EveryLogon.bat file located at %SYSTEMDRIVE%IXPSW[PACKAGE CODE] to achieve this movement and execute code in the context of other users.
Recommendations For IXP EasyInstall version 6.2.13723, consider restricting access to the EveryLogon.bat file to prevent unauthorized modifications until a patch is available. Additionally, monitor system activity for suspicious modifications to this file.

Exploit

Fix

Incorrect Permission

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2019-19895

Affected Products

Ixp Easyinstall