CVE-2019-7270: CSRF
Published Jul 2, 2019
·Updated
Linear eMerge 50P/5000P devices allow Cross-Site Request Forgery (CSRF).
Affected Software
4 affected components
Nortekcontrol Linear Emerge 50p Firmware<=4.6.07
Nortekcontrol Linear Emerge 50p
Nortekcontrol Linear Emerge 5000p Firmware<=4.6.07
Nortekcontrol Linear Emerge 5000p
Event History
Jul 2, 2019
CVE Published
via MITRE·04:33 PM
Data Sourced
via MITRE·04:33 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2019-7270?
CVE-2019-7270 is categorized as a medium severity vulnerability due to its potential for Cross-Site Request Forgery.
2
How do I fix CVE-2019-7270?
To fix CVE-2019-7270, update the firmware of the affected Linear eMerge 50P or 5000P devices to the latest version beyond 4.6.07.
3
Which devices are affected by CVE-2019-7270?
CVE-2019-7270 affects Linear eMerge 50P and 5000P devices running firmware version 4.6.07 or earlier.
4
What kind of attack can CVE-2019-7270 facilitate?
CVE-2019-7270 allows attackers to perform Cross-Site Request Forgery (CSRF), potentially leading to unauthorized actions on behalf of a user.
5
Is CVE-2019-7270 still a threat if my device is updated?
CVE-2019-7270 is no longer a threat if the Linear eMerge 50P or 5000P device firmware has been updated to a version beyond 4.6.07.