7.8
CVE-2019-19115
- EPSS 0.06%
- Veröffentlicht 08.10.2020 22:15:11
- Zuletzt bearbeitet 21.11.2024 04:34:13
- Quelle cve@mitre.org
- CVE-Watchlists
- Unerledigt
An escalation of privilege vulnerability in Nahimic APO Software Component Driver 1.4.2, 1.5.0, 1.5.1, 1.6.1 and 1.6.2 allows an attacker to execute code with SYSTEM privileges.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Nahimic ≫ Apo Software Component Version1.4.2
Nahimic ≫ Apo Software Component Version1.5.0
Nahimic ≫ Apo Software Component Version1.5.1
Nahimic ≫ Apo Software Component Version1.6.1
Nahimic ≫ Apo Software Component Version1.6.2
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.06% | 0.163 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 7.8 | 1.8 | 5.9 |
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
|
| nvd@nist.gov | 6.9 | 3.4 | 10 |
AV:L/AC:M/Au:N/C:C/I:C/A:C
|
CWE-427 Uncontrolled Search Path Element
The product uses a fixed or controlled search path to find resources, but one or more locations in that path can be under the control of unintended actors.