CVE-2019-13528: Medium severity tridium niagara vulnerability
A specific utility may allow an attacker to gain read access to privileged files in the Niagara AX 3.8u4 (JACE 3e, JACE 6e, JACE 7, JACE-8000), Niagara 4.4u3 (JACE 3e, JACE 6e, JACE 7, JACE-8000), and Niagara 4.7u1 (JACE-8000, Edge 10).
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2019-13528?
CVE-2019-13528 has a medium severity level due to its potential to allow unauthorized read access to privileged files.
How do I fix CVE-2019-13528?
To fix CVE-2019-13528, upgrade your Tridium Niagara AX or Niagara version to the patched versions or apply the vendor-recommended mitigations.
Which versions are affected by CVE-2019-13528?
CVE-2019-13528 affects Tridium Niagara AX 3.8u4, Niagara 4.4u3, and Niagara 4.7u1.
What kind of attack can exploit CVE-2019-13528?
CVE-2019-13528 can be exploited by an attacker to gain unauthorized read access to sensitive files.
Is there a workaround for CVE-2019-13528?
Currently, there are no specific workarounds for CVE-2019-13528 other than upgrading to a secure version.