CVE-2019-10993
high-risk
Published 2019-06-28
In WebAccess/SCADA Versions 8.3.5 and prior, multiple untrusted pointer dereference vulnerabilities may allow a remote attacker to execute arbitrary code.
Do I need to act?
!
23.6% chance of exploitation in next 30 days
EPSS score — higher than 76% of all CVEs
-
Not on CISA KEV list
No confirmed active exploitation reported to CISA
?
Patch status unknown
Check vendor advisories for fix availability and mitigation guidance
9
CVSS 9.8/10
Critical
NETWORK
/ LOW complexity
Affected Products (1)
Affected Vendors
References (36)
Third Party Advisory
https://www.us-cert.gov/ics/advisories/icsa-19-178-05
Third Party Advisory
https://www.zerodayinitiative.com/advisories/ZDI-19-597/
Third Party Advisory
https://www.zerodayinitiative.com/advisories/ZDI-19-598/
Third Party Advisory
https://www.zerodayinitiative.com/advisories/ZDI-19-601/
Third Party Advisory
https://www.zerodayinitiative.com/advisories/ZDI-19-602/
Third Party Advisory
https://www.zerodayinitiative.com/advisories/ZDI-19-603/
Third Party Advisory
https://www.zerodayinitiative.com/advisories/ZDI-19-605/
Third Party Advisory
https://www.zerodayinitiative.com/advisories/ZDI-19-606/
Third Party Advisory
https://www.zerodayinitiative.com/advisories/ZDI-19-607/
Third Party Advisory
https://www.zerodayinitiative.com/advisories/ZDI-19-611/
Third Party Advisory
https://www.zerodayinitiative.com/advisories/ZDI-19-612/
Third Party Advisory
https://www.zerodayinitiative.com/advisories/ZDI-19-613/
Third Party Advisory
https://www.zerodayinitiative.com/advisories/ZDI-19-614/
Third Party Advisory
https://www.zerodayinitiative.com/advisories/ZDI-19-615/
Third Party Advisory
https://www.zerodayinitiative.com/advisories/ZDI-19-616/
Third Party Advisory
https://www.zerodayinitiative.com/advisories/ZDI-19-617/
Third Party Advisory
https://www.zerodayinitiative.com/advisories/ZDI-19-618/
Third Party Advisory
https://www.zerodayinitiative.com/advisories/ZDI-19-623/
Third Party Advisory
https://www.us-cert.gov/ics/advisories/icsa-19-178-05
Third Party Advisory
https://www.zerodayinitiative.com/advisories/ZDI-19-597/
and 16 more references
51
/ 100
high-risk
Severity
32/34 · Critical
Exploitability
14/34 · Moderate
Exposure
5/34 · Minimal