CVE-2019-7281
01.07.2019, 19:15
Prima Systems FlexAir, Versions 2.3.38 and prior. An unauthenticated user can send unverified HTTP requests, which may allow the attacker to perform certain actions with administrative privileges if a logged-in user visits a malicious website.
Vendor | Product | Version |
---|---|---|
primasystems | flexair | 𝑥 ≤ 2.3.38 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration