Umbra Wiki cve cve/CVE-2019-7256
Back to wiki

CVE-2019-7256 — Nice Linear eMerge E3-Series OS Command Injection Vulnerability

provenance: imported · CVE: CVE-2019-7256

CVE-2019-7256: Nice Linear eMerge E3-Series OS Command Injection Vulnerability

CISA Known Exploited Vulnerability (KEV)

Vendor / project Nice
Product Linear eMerge E3-Series
Date added 2024-03-25
Due date 2024-04-15
Ransomware campaign use Unknown

Description

Nice Linear eMerge E3-Series contains an OS command injection vulnerability that allows an attacker to conduct remote code execution.

Required action (CISA)

Contact the vendor for guidance on remediating firmware, per their advisory.

Notes

https://linear-solutions.com/wp-content/uploads/E3-Bulletin-06-27-2023.pdf, https://www.cisa.gov/news-events/ics-advisories/icsa-24-065-01; https://nvd.nist.gov/vuln/detail/CVE-2019-7256

References

  • NVD: https://nvd.nist.gov/vuln/detail/CVE-2019-7256
  • KEV catalog: https://www.cisa.gov/known-exploited-vulnerabilities-catalog