Vulnerability Description
HARMAN AMX MVP5150 v2.87.13 devices allow remote OS Command Injection.
CVSS Score
8.8
HIGH
CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Harman | Amx Mvp5150 Firmware | 2.87.13 |
| Harman | Amx Mvp5150 | - |
Related Weaknesses (CWE)
References
- https://blog.hivint.com/advisory-injection-dangerous-command-into-harman-amx-mvpExploitThird Party Advisory
- https://www.amx.com/en/softwares/modero-mvp-5150-mvp-5200i-touch-panel-firmware-Vendor Advisory
- https://blog.hivint.com/advisory-injection-dangerous-command-into-harman-amx-mvpExploitThird Party Advisory
- https://www.amx.com/en/softwares/modero-mvp-5150-mvp-5200i-touch-panel-firmware-Vendor Advisory
FAQ
What is CVE-2019-11224?
CVE-2019-11224 is a vulnerability with a CVSS score of 8.8 (HIGH). HARMAN AMX MVP5150 v2.87.13 devices allow remote OS Command Injection.
How severe is CVE-2019-11224?
CVE-2019-11224 has been rated HIGH with a CVSS base score of 8.8/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2019-11224?
Check the references section above for vendor advisories and patch information. Affected products include: Harman Amx Mvp5150 Firmware, Harman Amx Mvp5150.