Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2019-5326

Опубликовано: 27 фев. 2020
Источник: nvd
CVSS3: 7.2
CVSS2: 6.5
EPSS Низкий

Описание

An administrative application user of or application user with write access to Aruba Airwave VisualRF is able to obtain code execution on the AMP platform. This is possible due to the ability to overwrite a file on disk which is subsequently deserialized by the Java application component.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:arubanetworks:airwave:*:*:*:*:*:*:*:*
Версия от 8.0.0 (включая) до 8.2.10.1 (исключая)

EPSS

Процентиль: 85%
0.02541
Низкий

7.2 High

CVSS3

6.5 Medium

CVSS2

Дефекты

CWE-502

Связанные уязвимости

github
больше 3 лет назад

An administrative application user of or application user with write access to Aruba Airwave VisualRF is able to obtain code execution on the AMP platform. This is possible due to the ability to overwrite a file on disk which is subsequently deserialized by the Java application component.

EPSS

Процентиль: 85%
0.02541
Низкий

7.2 High

CVSS3

6.5 Medium

CVSS2

Дефекты

CWE-502