CVE-2019-14718

Verifone MX900 series Pinpad Payment Terminals with OS 30251000 have Insecure Permissions, with resultant svc_netcontrol arbitrary command injection and privilege escalation.
References
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:verifone:mx900_firmware:30251000:*:*:*:*:*:*:*
cpe:2.3:h:verifone:mx900:-:*:*:*:*:*:*:*

History

No history.

Information

Published : 2020-10-23 05:15

Updated : 2024-02-04 21:23


NVD link : CVE-2019-14718

Mitre link : CVE-2019-14718

CVE.ORG link : CVE-2019-14718


JSON object : View

Products Affected

verifone

  • mx900_firmware
  • mx900
CWE
CWE-276

Incorrect Default Permissions