Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2019-19277

Опубликовано: 10 мар. 2020
Источник: nvd
CVSS3: 6.5
CVSS2: 5.5
EPSS Низкий

Описание

A vulnerability has been identified in SIPORT MP (All versions < 3.1.4). Vulnerable versions of the device allow the creation of special accounts ("service users") with administrative privileges that could enable a remote authenticated attacker to perform actions that are not visible to other users of the system, such as granting persons access to a secured area.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:siemens:siport_mp:*:*:*:*:*:*:*:*
Версия до 3.1.4 (исключая)

EPSS

Процентиль: 52%
0.00287
Низкий

6.5 Medium

CVSS3

5.5 Medium

CVSS2

Дефекты

CWE-778
NVD-CWE-Other

Связанные уязвимости

github
больше 3 лет назад

A vulnerability has been identified in SIPORT MP (All versions < 3.1.4). Vulnerable versions of the device allow the creation of special accounts ("service users") with administrative privileges that could enable a remote authenticated attacker to perform actions that are not visible to other users of the system, such as granting persons access to a secured area.

EPSS

Процентиль: 52%
0.00287
Низкий

6.5 Medium

CVSS3

5.5 Medium

CVSS2

Дефекты

CWE-778
NVD-CWE-Other