CVE-2019-19454: High severity wowza streaming engine vulnerability
Published May 18, 2020
·Updated
An arbitrary file download was found in the "Download Log" functionality of Wowza Streaming Engine <= 4.x.x. This issue was resolved in Wowza Streaming Engine 4.8.0.
Affected Software
1 affected component
Wowza Streaming Engine>=4.0.0<=4.8.0
Event History
May 18, 2020
CVE Published
via MITRE·04:40 PM
Data Sourced
via MITRE·04:40 PM
Description
Frequently Asked Questions
1
What is CVE-2019-19454?
CVE-2019-19454 is an arbitrary file download vulnerability found in the "Download Log" functionality of Wowza Streaming Engine.
2
What is the severity of CVE-2019-19454?
The severity of CVE-2019-19454 is high, with a severity value of 7.5.
3
How does CVE-2019-19454 affect Wowza Streaming Engine?
CVE-2019-19454 affects Wowza Streaming Engine versions <= 4.x.x.
4
How can I fix CVE-2019-19454?
To fix CVE-2019-19454, you need to upgrade to Wowza Streaming Engine 4.8.0 or later.
5
Where can I find more information about CVE-2019-19454?
You can find more information about CVE-2019-19454 in the official release notes of Wowza Streaming Engine 4.8.0.