← Back

CVE-2019-9106

nvd nist
Published: May 31, 2019Modified: Jun 17, 2026

JSON object

Loading...
9.8
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Exploitability: 3.9 / Impact: 5.9
Source: NVD

Description

The WebApp v04.68 in the supervisor on SAET Impianti Speciali TEBE Small 05.01 build 1137 devices allows remote attackers to execute or include local .php files, as demonstrated by menu=php://filter/convert.base64-encode/resource=index.php to read index.php.

Affected (2)

2 products
Tebe Small Firmware
Webapp
Configuration A
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Version 05.01 1137
Running on/withPlatform Versions
Saet
Tebe Small
All versions
Configuration B
1 vulnerable
Vulnerable SoftwareAffected Versions
Version 04.68

References (4)

Source: af854a3a-2127-422b-91ae-364da2661108
ExploitThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
ProductVendor Advisory

Timeline

No history available yet.