CVE-2019-20451
10.02.2020, 15:15
The HTTP API in Prismview System 9 11.10.17.00 and Prismview Player 11 13.09.1100 allows remote code execution by uploading RebootSystem.lnk and requesting /REBOOTSYSTEM or /RESTARTVNC. (Authentication is required but an XML file containing credentials can be downloaded.)Enginsight
Vendor | Product | Version |
---|---|---|
samsung | prismview_player_11 | 13.09.1100 |
samsung | prismview_system_9 | 11.10.17.00 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration