CRITICAL

CVE-2019-19897

CVSS v3

9.8

CRITICAL

EPSS Score

21.8%

exploit probability

CISA KEV

No

known exploited

Exploitation

SSVC status

Description

In IXP EasyInstall 6.2.13723, there is Remote Code Execution via the Agent Service. An unauthenticated attacker can communicate with the Agent Service over TCP port 20051, and execute code in the NT AUTHORITY\\SYSTEM context of the target system by using the Execute Command Line function.

Technical details

Published
1/23/2020

Frequently asked questions

What is CVE-2019-19897?

In IXP EasyInstall 6.2.13723, there is Remote Code Execution via the Agent Service. An unauthenticated attacker can communicate with the Agent Service over TCP port 20051, and execute code in the NT AUTHORITY\\SYSTEM context of the target system by using the Execute Command Line function.

Is CVE-2019-19897 actively exploited?

Active exploitation of CVE-2019-19897 has not been confirmed. The EPSS score is 21.8%, indicating the estimated probability of exploitation in the next 30 days.

What is the CVSS score for CVE-2019-19897?

CVE-2019-19897 has a CVSS v3 base score of 9.8 (CRITICAL severity).

Is CVE-2019-19897 affecting your environment?

Use isMalicious to check if any of your IPs or domains are associated with this vulnerability's IOCs.