VYPR
High severity8.1NVD Advisory· Published Mar 18, 2020· Updated Jun 17, 2026

CVE-2019-11689

CVE-2019-11689

Description

An issue was discovered in ASUSTOR exFAT Driver through 1.0.0.r20. When conducting license validation, exfat.cgi and exfatctl fail to properly validate server responses and pass unsanitized text to the system shell, resulting in code execution as root.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

5
  • cpe:2.3:a:asustor:exfat_driver:1.0.0:r14:*:*:*:*:*:*+ 3 more
    • cpe:2.3:a:asustor:exfat_driver:1.0.0:r14:*:*:*:*:*:*
    • cpe:2.3:a:asustor:exfat_driver:1.0.0:r15:*:*:*:*:*:*
    • cpe:2.3:a:asustor:exfat_driver:1.0.0:r20:*:*:*:*:*:*
    • (no CPE)range: <=1.0.0.r20
  • ASUSTOR/exFAT Driverdescription

Patches

Vulnerability mechanics

References

2

News mentions

0

No linked articles in our index yet.