User Writable Path Vulnerability in Softing Azure Gate SI by Softing
CVE-2019-11528

7.5HIGH

Key Information:

Vendor

Softing

Vendor
CVE Published:
10 October 2019

What is CVE-2019-11528?

An issue was identified in Softing uaGate SI version 1.60.01 that allows a system default path for executables to be writable by users. This misconfiguration presents a potential security risk, as it could enable unauthorized users to modify or replace executable files, leading to various types of attacks. Organizations using the affected version should review their configurations to mitigate the risk associated with this vulnerability.

References

CVSS V3.1

Score:
7.5
Severity:
HIGH
Confidentiality:
None
Integrity:
High
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.