VYPR
Critical severity9.8NVD Advisory· Published Jan 8, 2020· Updated Jun 17, 2026

CVE-2019-17076

CVE-2019-17076

Description

An issue was discovered in Jamf Pro 9.x and 10.x before 10.15.1. Deserialization of untrusted data when parsing JSON in several APIs may cause Denial of Service (DoS), remote code execution (RCE), and/or deletion of files on the Jamf Pro server.

Affected products

3
  • cpe:2.3:a:jamf:jamf:*:*:*:*:pro:*:*:*
    Range: >=9.4,<=9.101.4
  • Jamf/Jamf Prodescription
  • Jamf/Prollm-fuzzy
    Range: <10.15.1

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.