CVE-2019-1939
published 2019-09-05CVE-2019-1939: A vulnerability in the Cisco Webex Teams client for Windows could allow an unauthenticated, remote attacker to execute arbitrary commands on an affected…
PriorityP260high8.8CVSS 3.1
AVNACLPRNUIRSUCHIHAH
EPSS
4.73%
90.8th percentile
A vulnerability in the Cisco Webex Teams client for Windows could allow an unauthenticated, remote attacker to execute arbitrary commands on an affected system. This vulnerability is due to improper restrictions on software logging features used by the application on Windows operating systems. An attacker could exploit this vulnerability by convincing a targeted user to visit a website designed to submit malicious input to the affected application. A successful exploit could allow the attacker to cause the application to modify files and execute arbitrary commands on the system with the privileges of the targeted user.
Affected
3 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| cisco | cisco_webex_teams | >= unspecified < 3.0.12427.0 | 3.0.12427.0 |
| cisco | webex_teams | < 3.0.12427.0 | 3.0.12427.0 |
| cisco | webex_teams_logging_feature | — | — |
Detection & IOCsextracted from sources · hover to see the quote
- →Exploit vector is a malicious website submitting crafted input to the Cisco Webex Teams Windows client via its logging feature — monitor for unexpected child processes or file modifications spawned by the Webex Teams process (e.g., CiscoCollabHost.exe or Teams.exe) following browser-to-app URI/protocol handler invocations. ↗
- →Root cause is improper restrictions on software logging features on Windows — alert on anomalous log-related file writes or command execution originating from the Webex Teams client process on Windows endpoints. ↗
- ·No workarounds are available; patching to a fixed software version is the only mitigation. Track Cisco Bug ID CSCvp30119 for patch status. ↗
CVSS provenance
nvdv3.18.8HIGHCVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
nvdv3.07.5HIGHCVSS:3.0/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H
nvdv2.09.3CRITICALAV:N/AC:M/Au:N/C:C/I:C/A:C
vendor_cisco7.5HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Cisco
Cisco Webex Teams Logging Feature Command Execution Vulnerability
vendor_cisco·2019-09-04·CVSS 7.5
CVE-2019-1939 [HIGH] CWE-269 Cisco Webex Teams Logging Feature Command Execution Vulnerability
Cisco Webex Teams Logging Feature Command Execution Vulnerability
A vulnerability in the Cisco Webex Teams client for Windows could allow an unauthenticated, remote attacker to execute arbitrary commands on an affected system.
This vulnerability is due to improper restrictions on software logging features used by the application on Windows operating systems. An attacker could exploit this vulnerability by convincing a targeted user to visit a website designed to submit malicious input to the affected application. A successful exploit could allow the attacker to cause the application to modify files and execute arbitrary commands on the system with the privileges of the targeted user.
Cisco has released software updates that address this vulnerability. There are no workarounds that addres
Cisco
Cisco Webex Teams Logging Feature Command Execution Vulnerability
vendor_cisco·CVSS 3.0
CVE-2019-1939 Cisco Webex Teams Logging Feature Command Execution Vulnerability
CVE-2019-1939: Cisco Webex Teams Logging Feature Command Execution Vulnerability
A vulnerability in the Cisco Webex Teams client for Windows could allow an unauthenticated, remote attacker to execute arbitrary commands on an affected system. This vulnerability is due to improper restrictions on software logging features used by the application on Windows operating systems. An attacker could exploit this vulnerability by convincing a targeted user to visit a website designed to submit malicious input to the affected application. A successful exploit could allow the attacker to cause the application to modify files and execute arbitrary commands on the system with the privileges of the targeted user. Cisco has released software updates that address this vulnerability. There are no
CVSS: 3.0
GHSA
GHSA-w3v7-95f2-5pgr: A vulnerability in the Cisco Webex Teams client for Windows could allow an unauthenticated, remote attacker to execute arbitrary commands on an affect
ghsa_unreviewed·2022-05-24
CVE-2019-1939 [HIGH] GHSA-w3v7-95f2-5pgr: A vulnerability in the Cisco Webex Teams client for Windows could allow an unauthenticated, remote attacker to execute arbitrary commands on an affect
A vulnerability in the Cisco Webex Teams client for Windows could allow an unauthenticated, remote attacker to execute arbitrary commands on an affected system. This vulnerability is due to improper restrictions on software logging features used by the application on Windows operating systems. An attacker could exploit this vulnerability by convincing a targeted user to visit a website designed to submit malicious input to the affected application. A successful exploit could allow the attacker to cause the application to modify files and execute arbitrary commands on the system with the privileges of the targeted user.
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2019-10128 postgresql: EnterpriseDB installer does not clear permissive ACL entries
bugzilla·2019-05-06·CVSS 7.8
CVE-2019-10128 [HIGH] CVE-2019-10128 postgresql: EnterpriseDB installer does not clear permissive ACL entries
CVE-2019-10128 postgresql: EnterpriseDB installer does not clear permissive ACL entries
The Windows installer for EnterpriseDB-supplied PostgreSQL does not lock down
the ACL of the binary installation directory or the ACL of the data directory;
it keeps the inherited ACL. In the default configuration, this allows a local
attacker to read arbitrary data directory files, essentially bypassing
database-imposed read access limitations. In plausible non-default
configurations, an attacker having both an unprivileged Windows account and an
unprivileged PostgreSQL account can cause the PostgreSQL service account to
execute arbitrary code.
Discussion:
Acknowledgments:
Name: Noah Misch, the PostgreSQL Project
---
External References:
https://www.postgresql.org/about/news/1939/
Bugzilla
CVE-2019-10129 postgresql: Memory disclosure in partition routing
bugzilla·2019-05-06·CVSS 6.5
CVE-2019-10129 [MEDIUM] CVE-2019-10129 postgresql: Memory disclosure in partition routing
CVE-2019-10129 postgresql: Memory disclosure in partition routing
Using a purpose-crafted insert to a partitioned table, an attacker can read
arbitrary bytes of server memory. In the default configuration, any user can
create a partitioned table suitable for this attack. (Exploit prerequisites
are the same as for CVE-2018-1052.)
Discussion:
Acknowledgments:
Name: Noah Misch, the PostgreSQL Project
---
This vulnerability only affected PostgreSQL 11.x prior to 11.3
---
Created postgresql tracking bugs for this issue:
Affects: fedora-all [bug 1709183]
---
External References:
https://www.postgresql.org/about/news/1939/
2019-09-05
Published