CVE-2019-7300: Critical severity Articatech Artica Proxy vulnerability
Published Feb 1, 2019
·Updated
Artica Proxy 3.06.200056 allows remote attackers to execute arbitrary commands as root by reading the ressources/settings.inc ldapadmin and ldappassword fields, using these credentials at logon.php, and then entering the commands in the admin.index.php command-line field.
Affected Software
1 affected component
Articatech Artica Proxy=3.06.200056
Event History
Feb 1, 2019
CVE Published
via MITRE·09:00 AM
Data Sourced
via MITRE·09:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2019-7300?
CVE-2019-7300 is considered to have a high severity due to the potential for remote command execution as root.
2
How do I fix CVE-2019-7300?
To fix CVE-2019-7300, update the Artica Proxy software to the latest version that addresses this vulnerability.
3
What systems are affected by CVE-2019-7300?
CVE-2019-7300 affects Artica Proxy version 3.06.200056 specifically.
4
What type of attack does CVE-2019-7300 allow?
CVE-2019-7300 allows remote attackers to execute arbitrary commands on the affected system.
5
Is authentication required to exploit CVE-2019-7300?
Yes, exploitation of CVE-2019-7300 requires valid credentials to access the admin interface.