CVE-2019-9106 - CVE House
Back to Database
Status published Critical CVE-2019-9106

The WebApp v04.68 in the supervisor on SAET Impianti Speciali...

Vulnerability Description

The WebApp v04.68 in the supervisor on SAET Impianti Speciali TEBE Small 05.01 build 1137 devices allows remote attackers to execute or include local .php files, as demonstrated by menu=php://filter/convert.base64-encode/resource=index.php to read index.php.

Impact Analysis

Refer to official advisory for detailed impact metrics.

Remediation

Ensure systems are updated to the latest vendor-supplied patch levels.

THREAT MONITOR

Am I Vulnerable?

Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2019-9106

Credits & Attribution

No credits recorded in the NVD database.

Affected Vendor

Affected Software

tebe small firmware, webapp
Vulnerable Versions:
05.01, 04.68

Timeline

Official Publish: May 31st, 2019
Last Modified: August 4th, 2024
Added to House: July 20th, 2026

CVSS Vectors

V3: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Weaknesses (CWE)

No CWE data available

MITRE ATT&CK TTPs

No associated TTPs found for this vulnerability.