Vulnerability Details CVE-2019-15051
An issue was discovered in Softing uaGate (SI, MB, 840D) firmware through 1.71.00.1225. A CGI script is vulnerable to command injection via a maliciously crafted form parameter.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.031
EPSS Ranking 86.2%
CVSS Severity
CVSS v3 Score 8.8
CVSS v2 Score 9.0
Products affected by CVE-2019-15051
-
cpe:2.3:h:softing:uagate_840d:-
-
cpe:2.3:h:softing:uagate_mb:-
-
cpe:2.3:h:softing:uagate_si:-
-
cpe:2.3:o:softing:uagate_840d_firmware:-
-
cpe:2.3:o:softing:uagate_840d_firmware:1.71.00.1225
-
cpe:2.3:o:softing:uagate_mb_firmware:-
-
cpe:2.3:o:softing:uagate_mb_firmware:1.71.00.1225
-
cpe:2.3:o:softing:uagate_si_firmware:-
-
cpe:2.3:o:softing:uagate_si_firmware:1.60.01
-
cpe:2.3:o:softing:uagate_si_firmware:1.71.00.1225