Vulnerability Description
Mirasys VMS before V7.6.1 and 8.x before V8.3.2 mishandles the Download() method of AutoUpdateService in SMServer.exe, leading to Directory Traversal. An attacker could use ..\ with this method to iterate over lists of interesting system files and download them without previous authentication. This includes SAM-database backups, Web.config files, etc. and might cause a serious impact on confidentiality.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Mirasys | Mirasys Vms | < 7.6.1 |
Related Weaknesses (CWE)
References
- https://www.kyberturvallisuuskeskus.fi/en/vulnerabilities-mirasys-vms-video-manaThird Party Advisory
- https://www.kyberturvallisuuskeskus.fi/en/vulnerabilities-mirasys-vms-video-manaThird Party Advisory
FAQ
What is CVE-2019-11029?
CVE-2019-11029 is a vulnerability with a CVSS score of 7.5 (HIGH). Mirasys VMS before V7.6.1 and 8.x before V8.3.2 mishandles the Download() method of AutoUpdateService in SMServer.exe, leading to Directory Traversal. An attacker could use ..\ with this method to ite...
How severe is CVE-2019-11029?
CVE-2019-11029 has been rated HIGH with a CVSS base score of 7.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2019-11029?
Check the references section above for vendor advisories and patch information. Affected products include: Mirasys Mirasys Vms.