Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2019-7238

Sonatype Nexus Repository Manager before 3.15.0 has Incorrect Access Control.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.94
EPSS Ranking 99.9%
CVSS Severity
CVSS v3 Score 9.8
CVSS v2 Score 7.5
Proposed Action
Sonatype Nexus Repository Manager before 3.15.0 has an incorrect access control vulnerability. Exploitation allows for remote code execution.
Ransomware Campaign
Unknown
Products affected by CVE-2019-7238
  • Sonatype » Nexus » Version: N/A
    cpe:2.3:a:sonatype:nexus:-
  • Sonatype » Nexus » Version: 2.0.4
    cpe:2.3:a:sonatype:nexus:2.0.4
  • Sonatype » Nexus » Version: 2.0.5
    cpe:2.3:a:sonatype:nexus:2.0.5
  • Sonatype » Nexus » Version: 2.0.6
    cpe:2.3:a:sonatype:nexus:2.0.6
  • Sonatype » Nexus » Version: 2.1
    cpe:2.3:a:sonatype:nexus:2.1
  • Sonatype » Nexus » Version: 2.1.1
    cpe:2.3:a:sonatype:nexus:2.1.1
  • Sonatype » Nexus » Version: 2.11.0
    cpe:2.3:a:sonatype:nexus:2.11.0
  • Sonatype » Nexus » Version: 2.2
    cpe:2.3:a:sonatype:nexus:2.2
  • Sonatype » Nexus » Version: 2.3.1
    cpe:2.3:a:sonatype:nexus:2.3.1
  • Sonatype » Nexus » Version: 2.4.0
    cpe:2.3:a:sonatype:nexus:2.4.0
  • Sonatype » Nexus » Version: 2.5.0
    cpe:2.3:a:sonatype:nexus:2.5.0
  • Sonatype » Nexus » Version: 2.5.1
    cpe:2.3:a:sonatype:nexus:2.5.1
  • Sonatype » Nexus » Version: 2.6.0
    cpe:2.3:a:sonatype:nexus:2.6.0
  • Sonatype » Nexus » Version: 2.6.1
    cpe:2.3:a:sonatype:nexus:2.6.1
  • Sonatype » Nexus » Version: 2.6.2
    cpe:2.3:a:sonatype:nexus:2.6.2
  • Sonatype » Nexus » Version: 2.6.3
    cpe:2.3:a:sonatype:nexus:2.6.3
  • Sonatype » Nexus » Version: 2.6.4
    cpe:2.3:a:sonatype:nexus:2.6.4
  • Sonatype » Nexus » Version: 2.6.5
    cpe:2.3:a:sonatype:nexus:2.6.5
  • Sonatype » Nexus » Version: 2.7.0
    cpe:2.3:a:sonatype:nexus:2.7.0
  • Sonatype » Nexus » Version: 2.7.1
    cpe:2.3:a:sonatype:nexus:2.7.1
  • Sonatype » Nexus » Version: 3.0.0
    cpe:2.3:a:sonatype:nexus:3.0.0


Contact Us

Shodan ® - All rights reserved