Show plain JSON{"id": "CVE-2019-19664", "metrics": {"cvssMetricV2": [{"type": "Primary", "source": "nvd@nist.gov", "cvssData": {"version": "2.0", "baseScore": 5.8, "accessVector": "NETWORK", "vectorString": "AV:N/AC:M/Au:N/C:N/I:P/A:P", "authentication": "NONE", "integrityImpact": "PARTIAL", "accessComplexity": "MEDIUM", "availabilityImpact": "PARTIAL", "confidentialityImpact": "NONE"}, "acInsufInfo": false, "impactScore": 4.9, "baseSeverity": "MEDIUM", "obtainAllPrivilege": false, "exploitabilityScore": 8.6, "obtainUserPrivilege": false, "obtainOtherPrivilege": false, "userInteractionRequired": true}], "cvssMetricV31": [{"type": "Primary", "source": "nvd@nist.gov", "cvssData": {"scope": "UNCHANGED", "version": "3.1", "baseScore": 7.1, "attackVector": "NETWORK", "baseSeverity": "HIGH", "vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:H", "integrityImpact": "LOW", "userInteraction": "REQUIRED", "attackComplexity": "LOW", "availabilityImpact": "HIGH", "privilegesRequired": "NONE", "confidentialityImpact": "NONE"}, "impactScore": 4.2, "exploitabilityScore": 2.8}]}, "published": "2020-02-10T17:15:16.350", "references": [{"url": "https://github.com/harshit-shukla/CVE", "tags": ["Third Party Advisory"], "source": "cve@mitre.org"}, {"url": "https://github.com/harshit-shukla/CVE/blob/master/CVE-2019-19664.md", "tags": ["Third Party Advisory"], "source": "cve@mitre.org"}, {"url": "https://github.com/harshit-shukla/CVE", "tags": ["Third Party Advisory"], "source": "af854a3a-2127-422b-91ae-364da2661108"}, {"url": "https://github.com/harshit-shukla/CVE/blob/master/CVE-2019-19664.md", "tags": ["Third Party Advisory"], "source": "af854a3a-2127-422b-91ae-364da2661108"}], "vulnStatus": "Modified", "weaknesses": [{"type": "Primary", "source": "nvd@nist.gov", "description": [{"lang": "en", "value": "CWE-352"}]}], "descriptions": [{"lang": "en", "value": "A CSRF vulnerability exists in the Web Settings of Web File Manager in Rumpus FTP 8.2.9.1. Exploitation of this vulnerability can result in manipulation of Server Web settings at RAPR/WebSettingsGeneralSet.html."}, {"lang": "es", "value": "Se presenta una vulnerabilidad de tipo CSRF en Web Settings de Web File Manager en Rumpus FTP versi\u00f3n 8.2.9.1. La explotaci\u00f3n de esta vulnerabilidad puede resultar en la manipulaci\u00f3n de la configuraci\u00f3n de Server Web en el archivo RAPR/WebSettingsGeneralSet.html."}], "lastModified": "2024-11-21T04:35:08.927", "configurations": [{"nodes": [{"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:a:maxum:rumpus_ftp:8.2.9.1:*:*:*:*:windows:*:*", "vulnerable": true, "matchCriteriaId": "DCEE9C9D-5226-4555-8C12-94593EA7F2F3"}], "operator": "OR"}]}], "sourceIdentifier": "cve@mitre.org"}