CVE-2019-13028
28.06.2019, 22:15
An incorrect implementation of a local web server in eID client (Windows version before 3.1.2, Linux version before 3.0.3) allows remote attackers to execute arbitrary code (.cgi, .pl, or .php) or delete arbitrary files via a crafted HTML page. This is a product from the Ministry of Interior of the Slovak Republic.Enginsight
Vendor | Product | Version |
---|---|---|
minv | electronic_identification_cards_client | 𝑥 < 3.0.3 |
minv | electronic_identification_cards_client | 𝑥 < 3.1.2 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References