Lucene search

K
cve[email protected]CVE-2019-6026
HistoryDec 26, 2019 - 4:15 p.m.

CVE-2019-6026

2019-12-2616:15:12
web.nvd.nist.gov
27
motex
privilege escalation
vulnerability
lanscope cat
lanscope an
nvd
cve-2019-6026

7.2 High

CVSS2

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:L/AC:L/Au:N/C:C/I:C/A:C

7.8 High

CVSS3

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

7.9 High

AI Score

Confidence

High

0.0004 Low

EPSS

Percentile

12.8%

Privilege escalation vulnerability in Multiple MOTEX products (LanScope Cat client program (MR) and LanScope Cat client program (MR)LanScope Cat detection agent (DA) prior to Ver.9.2.1.0, LanScope Cat server monitoring agent (SA, SAE) prior to Ver.9.2.2.0, LanScope An prior to Ver 2.7.7.0 (LanScope An 2 series), and LanScope An prior to Ver 3.0.8.1 (LanScope An 3 series)) allow authenticated attackers to obtain unauthorized privileges and execute arbitrary code.

Affected configurations

NVD
Node
motexlanscope_anRange2.0.0.02.7.7.0
OR
motexlanscope_anRange3.0.0.03.0.8.1windows
OR
motexlanscope_cat_client_programRange<8.4.3.2
OR
motexlanscope_cat_client_programRange9.0.0.09.0.1.9
OR
motexlanscope_cat_client_programRange9.1.0.09.1.0.8
OR
motexlanscope_cat_client_programRange9.2.0.09.2.0.3
OR
motexlanscope_cat_detection_agentRange<8.4.3.2
OR
motexlanscope_cat_detection_agentRange9.0.0.09.0.1.9
OR
motexlanscope_cat_detection_agentRange9.1.0.09.1.0.8
OR
motexlanscope_cat_detection_agentRange9.2.0.09.2.0.3
OR
motexlanscope_cat_server_monitoring_agentRange<9.2.2.0

CNA Affected

[
  {
    "product": "Multiple MOTEX products",
    "vendor": "MOTEX.Inc",
    "versions": [
      {
        "status": "affected",
        "version": "LanScope Cat client program (MR) and LanScope Cat client program (MR)LanScope Cat detection agent (DA) prior to Ver.9.2.1.0, LanScope Cat server monitoring agent (SA, SAE) prior to Ver.9.2.2.0, LanScope An prior to Ver 2.7.7.0 (LanScope An 2 series), and LanScope An prior to Ver 3.0.8.1 (LanScope An 3 series)"
      }
    ]
  }
]

7.2 High

CVSS2

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:L/AC:L/Au:N/C:C/I:C/A:C

7.8 High

CVSS3

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

7.9 High

AI Score

Confidence

High

0.0004 Low

EPSS

Percentile

12.8%

Related for CVE-2019-6026