Vulnerability Details CVE-2019-18249
Reliable Controls MACH-ProWebCom/Sys, all versions prior to 2.15 (Firmware versions prior to 8.26.4), may allow attacker to execute commands on behalf of the user when an authenticated user clicks on a malicious link.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.003
EPSS Ranking 55.8%
CVSS Severity
CVSS v3 Score 6.1
CVSS v2 Score 4.3
Products affected by CVE-2019-18249
-
cpe:2.3:h:reliablecontrols:mach-prowebcom:-
-
cpe:2.3:h:reliablecontrols:mach-prowebsys:-
-
cpe:2.3:o:reliablecontrols:mach-prowebcom_firmware:-
-
cpe:2.3:o:reliablecontrols:mach-prowebcom_firmware:7.80
-
cpe:2.3:o:reliablecontrols:mach-prowebsys_firmware:-