CVE-2015-4719: Critical severity pexip infinity vulnerability
Published Sep 24, 2020
·Updated
The client API authentication mechanism in Pexip Infinity before 10 allows remote attackers to gain privileges via a crafted request.
Affected Software
1 affected component
Pexip Pexip Infinity<10
Event History
Sep 24, 2020
CVE Published
via MITRE·01:13 AM
Data Sourced
via MITRE·01:13 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2015-4719?
CVE-2015-4719 is classified as a high severity vulnerability due to its potential for privilege escalation by remote attackers.
2
How do I fix CVE-2015-4719?
To fix CVE-2015-4719, upgrade to Pexip Infinity version 10 or later, which contains the necessary security patches.
3
What impact does CVE-2015-4719 have on my system?
CVE-2015-4719 allows remote attackers to exploit the client API authentication mechanism, potentially gaining unauthorized privileges.
4
Is CVE-2015-4719 present in versions after 10 of Pexip Infinity?
CVE-2015-4719 is not present in versions of Pexip Infinity 10 and above, as those versions have addressed the vulnerability.
5
Can CVE-2015-4719 be exploited without authentication?
Yes, CVE-2015-4719 can be exploited by remote attackers without needing prior authentication.