CVE-2019-7256: Nice Linear eMerge E3-Series OS Command Injection Vulnerability
Linear eMerge E3-Series devices allow Command Injections.
Other sources
Nice Linear eMerge E3-Series contains an OS command injection vulnerability that allows an attacker to conduct remote code execution.
— CISA
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Operational
Contact the vendor for guidance on remediating firmware for Nice Linear eMerge E3-Series devices, per their advisory.
Event History
Frequently Asked Questions
What is the severity of CVE-2019-7256?
CVE-2019-7256 has a medium severity rating due to its potential for remote code execution.
How do I fix CVE-2019-7256?
To mitigate CVE-2019-7256, upgrade your Linear eMerge Essential or Elite Firmware to a version later than 1.00-06.
What devices are affected by CVE-2019-7256?
CVE-2019-7256 affects Linear eMerge Essential and Elite devices running firmware versions up to 1.00-06.
What type of vulnerability is CVE-2019-7256?
CVE-2019-7256 is an OS command injection vulnerability that allows for potential remote code execution.
Can CVE-2019-7256 be exploited remotely?
Yes, CVE-2019-7256 can be exploited remotely if the affected devices are exposed to an attacker.