THREATOPS
THREAT OPSThreat News › [NVD] CVE-2019-25029 (CRITICAL 9.8) — In Versa Director, the command injection is an attack in which the goal is execution of arbitrary commands on the host operating system via a vulnerable application. Command injection attacks are possible when an application passes unsafe user supplied data (forms, cookies, HTTP

[NVD] CVE-2019-25029 (CRITICAL 9.8) — In Versa Director, the command injection is an attack in which the goal is execution of arbitrary commands on the host operating system via a vulnerable application. Command injection attacks are possible when an application passes unsafe user supplied data (forms, cookies, HTTP

lownvdPublished 2021-05-26

CVE-2019-25029 CVSS: 9.8 CRITICAL Published: 2021-05-26T19:15:08.773

In Versa Director, the command injection is an attack in which the goal is execution of arbitrary commands on the host operating system via a vulnerable application. Command injection attacks are possible when an application passes unsafe user supplied data (forms, cookies, HTTP headers etc.) to a system shell. In this attack, t

Indicators of compromise

Original source: https://nvd.nist.gov/vuln/detail/CVE-2019-25029