VYPR
Critical severity9.8NVD Advisory· Published Oct 8, 2019· Updated Jun 17, 2026

CVE-2019-3980

CVE-2019-3980

Description

The Solarwinds Dameware Mini Remote Client agent v12.1.0.89 supports smart card authentication which can allow a user to upload an executable to be executed on the DWRCS.exe host. An unauthenticated, remote attacker can request smart card login and upload and execute an arbitrary executable run under the Local System account.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

3
  • cpe:2.3:a:solarwinds:dameware_mini_remote_control:12.1.0.89:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:solarwinds:dameware_mini_remote_control:12.1.0.89:*:*:*:*:*:*:*
    • (no CPE)range: = 12.1.0.89
  • Solarwinds/Dameware Mini Remote Client agentdescription

Patches

Vulnerability mechanics

References

2

News mentions

0

No linked articles in our index yet.