CVE-2019-7260: Critical severity nortekcontrol linear emerge essential firmware vulnerability
Published Jul 2, 2019
·Updated
Linear eMerge E3-Series devices have Cleartext Credentials in a Database.
Affected Software
4 affected components
Nortekcontrol Linear Emerge Essential Firmware<=1.00-06
Nortekcontrol Linear Emerge Essential
Nortekcontrol Linear Emerge Elite Firmware<=1.00-06
Nortekcontrol Linear Emerge Elite
Event History
Jul 2, 2019
CVE Published
via MITRE·05:06 PM
Data Sourced
via MITRE·05:06 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2019-7260?
The severity of CVE-2019-7260 is classified as high due to the presence of cleartext credentials in a database.
2
What systems are affected by CVE-2019-7260?
CVE-2019-7260 affects Linear eMerge E3-Series devices running versions up to and including 1.00-06 of the Essential and Elite firmware.
3
How do I fix CVE-2019-7260?
To fix CVE-2019-7260, users should upgrade to the latest firmware version provided by Nortekcontrol that addresses this vulnerability.
4
What data is exposed in CVE-2019-7260?
CVE-2019-7260 exposes cleartext credentials which may allow unauthorized access to the affected systems.
5
Is CVE-2019-7260 still a risk if I am using a later version?
If you are using a version of the firmware above 1.00-06, your system should not be vulnerable to CVE-2019-7260.