← Back

CVE-2019-16514

nvd nist
Published: Jan 23, 2020Modified: Nov 21, 2024

JSON object

Loading...
7.2
Vector
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
Exploitability: 1.2 / Impact: 5.9
Source: NVD

Description

An issue was discovered in ConnectWise Control (formerly known as ScreenConnect) 19.3.25270.7185. The server allows remote code execution. Administrative users could upload an unsigned extension ZIP file containing executable code that is subsequently executed by the server.

Affected (1)

Products: Connectwise: Control
1 product
Control
Configuration A
1 vulnerable
Vulnerable SoftwareAffected Versions
Version 19.3.25270.7185

Timeline

No history available yet.