CVE-2019-5414
CVE-2019-5414
Vexday Risk Score
3Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS —EPSS 1.9%KEV nãoPoC —Nuclei —Metasploit —Patch —
Lifecycle
17 Mar 2019Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
If an attacker can control the port, which in itself is a very sensitive value, they can inject arbitrary OS commands due to the usage of the exec function in a third-party module kill-port < 1.3.2.
Affected products
n/a · kill-portReferences
https://hackerone.com/reports/389561