CVE-2018-19013: Command Injection
An attacker could inject commands to delete files and/or delete the contents of a file on CX-Supervisor (Versions 3.42 and prior) through a specially crafted project file.
Affected Software
Event History
Frequently Asked Questions
What is the vulnerability ID of this issue?
The vulnerability ID of this issue is CVE-2018-19013.
What is the severity of CVE-2018-19013?
The severity of CVE-2018-19013 is medium.
What software versions are affected by CVE-2018-19013?
CX-Supervisor versions 3.42 and prior are affected by CVE-2018-19013.
How can an attacker exploit CVE-2018-19013?
An attacker can exploit CVE-2018-19013 by injecting commands to delete files and/or delete the contents of a file through a specially crafted project file.
Are there any references available for CVE-2018-19013?
Yes, you can find references for CVE-2018-19013 at the following URLs: [http://www.securityfocus.com/bid/106654](http://www.securityfocus.com/bid/106654) and [https://ics-cert.us-cert.gov/advisories/ICSA-19-017-01](https://ics-cert.us-cert.gov/advisories/ICSA-19-017-01).