First published: Wed Dec 11 2019(Updated: )
Blink XT2 Sync Module firmware prior to 2.13.11 allows remote attackers to execute arbitrary commands on the device due to improperly sanitized input when retrieving internal network configuration data.
Credit: vulnreport@tenable.com
Affected Software | Affected Version | How to fix |
---|---|---|
Amazon Blink Xt2 Sync Module Firmware | <2.13.11 | |
Amazon Blink Xt2 Sync Module |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2019-3989 is a vulnerability in the Blink XT2 Sync Module firmware that allows remote attackers to execute arbitrary commands on the device.
CVE-2019-3989 has a severity value of 9.8, which is considered critical.
CVE-2019-3989 occurs due to improperly sanitized input when retrieving internal network configuration data.
The Blink XT2 Sync Module firmware prior to version 2.13.11 is affected by CVE-2019-3989.
No, the Amazon Blink Xt2 Sync Module is not vulnerable to CVE-2019-3989.
To fix CVE-2019-3989, users should update their Blink XT2 Sync Module firmware to version 2.13.11 or later.