CVSS v3
9.8
CRITICAL
EPSS Score
21.8%
exploit probability
CISA KEV
No
known exploited
Exploitation
—
SSVC status
In IXP EasyInstall 6.2.13723, there is Remote Code Execution via the Agent Service. An unauthenticated attacker can communicate with the Agent Service over TCP port 20051, and execute code in the NT AUTHORITY\\SYSTEM context of the target system by using the Execute Command Line function.
In IXP EasyInstall 6.2.13723, there is Remote Code Execution via the Agent Service. An unauthenticated attacker can communicate with the Agent Service over TCP port 20051, and execute code in the NT AUTHORITY\\SYSTEM context of the target system by using the Execute Command Line function.
Active exploitation of CVE-2019-19897 has not been confirmed. The EPSS score is 21.8%, indicating the estimated probability of exploitation in the next 30 days.
CVE-2019-19897 has a CVSS v3 base score of 9.8 (CRITICAL severity).
Use isMalicious to check if any of your IPs or domains are associated with this vulnerability's IOCs.
Ranked by exploit probability (EPSS).