Back to Database
Status published
Medium
CVE-2019-17321
ClipSoft REXPERT 1.0.0.527 and earlier version have an information disclosure...
Vulnerability Description
ClipSoft REXPERT 1.0.0.527 and earlier version have an information disclosure issue. When requesting web page associated with session, could leak username via session file path of HTTP response data. No authentication is required.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2019-17321
Credits & Attribution
No credits recorded in the NVD database.
More from ClipSoft
View All →CVE-2019-17326
ClipSoft REXPERT 1.0.0.527 and earlier version allows remote attacker to...
Medium
6.5
CVE-2019-17325
ClipSoft REXPERT 1.0.0.527 and earlier version allows remote attacker to...
Medium
6.5
CVE-2019-17324
ClipSoft REXPERT 1.0.0.527 and earlier version allows directory traversal by...
Medium
6.5
CVE-2019-17323
ClipSoft REXPERT 1.0.0.527 and earlier version allows arbitrary file creation...
High
8.8
CVE-2019-17322
ClipSoft REXPERT 1.0.0.527 and earlier version allows arbitrary file creation...
Medium
6.5
Affected Vendor
ClipSoft
View all reports →Affected Software
REXPERT
Vulnerable Versions:
1.0.0.527 and earlier
Timeline
Official Publish:
October 30th, 2019
Last Modified:
August 5th, 2024
Added to House:
July 20th, 2026
CVSS Vectors
V3:
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N