Critical severity9.8NVD Advisory· Published Oct 8, 2019· Updated Jun 17, 2026
CVE-2019-3980
CVE-2019-3980
Description
The Solarwinds Dameware Mini Remote Client agent v12.1.0.89 supports smart card authentication which can allow a user to upload an executable to be executed on the DWRCS.exe host. An unauthenticated, remote attacker can request smart card login and upload and execute an arbitrary executable run under the Local System account.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3cpe:2.3:a:solarwinds:dameware_mini_remote_control:12.1.0.89:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:solarwinds:dameware_mini_remote_control:12.1.0.89:*:*:*:*:*:*:*
- (no CPE)range: = 12.1.0.89
- Solarwinds/Dameware Mini Remote Client agentdescription
Patches
Vulnerability mechanics
References
2- www.tenable.com/security/research/tra-227-43nvdExploitThird Party Advisory
- www.tenable.com/security/research/tra-2019-43nvdThird Party Advisory
News mentions
0No linked articles in our index yet.