CVE-2019-7254: Path Traversal
Published Jul 2, 2019
·Updated
Linear eMerge E3-Series devices allow File Inclusion.
Affected Software
4 affected components
Nortekcontrol Linear Emerge Essential Firmware<=1.00-06
Nortekcontrol Linear Emerge Essential
Nortekcontrol Linear Emerge Elite Firmware<=1.00-06
Nortekcontrol Linear Emerge Elite
Event History
Jul 2, 2019
CVE Published
via MITRE·06:51 PM
Data Sourced
via MITRE·06:51 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2019-7254?
CVE-2019-7254 is considered to have a medium severity due to its potential for file inclusion vulnerabilities.
2
How do I fix CVE-2019-7254?
To mitigate CVE-2019-7254, update the Linear eMerge E3-Series devices to a firmware version later than 1.00-06.
3
What devices are affected by CVE-2019-7254?
CVE-2019-7254 affects Linear eMerge Essential and Linear eMerge Elite devices running firmware versions up to and including 1.00-06.
4
What types of attacks can exploit CVE-2019-7254?
CVE-2019-7254 can be exploited through attackers leveraging file inclusion techniques to access unauthorized files.
5
Is CVE-2019-7254 publicly disclosed?
Yes, CVE-2019-7254 has been publicly disclosed and documented in various security advisories.