CVE-2019-15051: Command Injection
Published Oct 10, 2019
·Updated
An issue was discovered in Softing uaGate (SI, MB, 840D) firmware through 1.71.00.1225. A CGI script is vulnerable to command injection via a maliciously crafted form parameter.
Affected Software
6 affected components
Softing Uagate Si Firmware<=1.71.00.1225
Softing uaGate SI
Softing Uagate Mb Firmware<=1.71.00.1225
Softing Uagate Mb
Softing Uagate 840d Firmware<=1.71.00.1225
Softing Uagate 840d
Event History
Oct 10, 2019
CVE Published
via MITRE·07:12 PM
Data Sourced
via MITRE·07:12 PM
Description
Frequently Asked Questions
1
What is CVE-2019-15051?
CVE-2019-15051 is a vulnerability in Softing uaGate firmware that allows command injection via a maliciously crafted form parameter.
2
How severe is CVE-2019-15051?
CVE-2019-15051 has a severity score of 8.8 (critical).
3
Which versions are affected by CVE-2019-15051?
Softing uaGate (SI, MB, 840D) firmware versions up to and including 1.71.00.1225 are affected by CVE-2019-15051.
4
How can I fix CVE-2019-15051?
There is currently no patch or fix available for CVE-2019-15051. It is recommended to contact the vendor for further guidance.
5
Where can I find more information about CVE-2019-15051?
You can find more information about CVE-2019-15051 at https://security.mioso.com/CVE-2019-15051-en.html.