TROYANOSYVIRUS
Voltar para CVEs

CVE-2019-11031

N/A

Descricao

Mirasys VMS before V7.6.1 and 8.x before V8.3.2 mishandles the auto-update feature of IDVRUpdateService2 in DVRServer.exe. An attacker can upload files with a Setup-Files action, and then execute these files with SYSTEM privileges.

Detalhes CVE

Pontuacao CVSS v3.1N/A
Publicado8/22/2019
Ultima modificacao11/21/2024
Fontenvd
Avistamentos honeypot0

Produtos afetados

mirasys:mirasys_vms

Fraquezas (CWE)

CWE-434

Correlacoes IOC

Sem correlacoes registradas

This product uses data from the NVD API but is not endorsed or certified by the NVD.