CVE-2019-19896
23.01.2020, 21:15
In IXP EasyInstall 6.2.13723, there is Remote Code Execution via weak permissions on the Engine Service share. The default file permissions of the IXP$ share on the server allows modification of directories and files (e.g., bat-scripts), which allows execution of code in the context of NT AUTHORITY\SYSTEM on the target server and clients.Enginsight
Vendor | Product | Version |
---|---|---|
ixpdata | easyinstall | 6.2.13723 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration