← Back

CVE-2019-19102

nvd nist
Published: Apr 29, 2020Modified: Jun 17, 2026

JSON object

Loading...
7.5
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N
Exploitability: 3.9 / Impact: 3.6
Source: NVD

Description

A directory traversal vulnerability in SharpZipLib used in the upgrade service in B&R Automation Studio versions 4.0.x, 4.1.x and 4.2.x allow unauthenticated users to write to certain local directories. The vulnerability is also known as zip slip.

Affected (3)

1 product
Automation Studio
Configuration A
3 vulnerable
Vulnerable SoftwareAffected Versions
Br Automation
From 4.0 to 4.0.32.15
From 4.1 to 4.1.17.113
From 4.2 to 4.2.14.119

Timeline

No history available yet.