Unrated severityNVD Advisory· Published Sep 17, 2019· Updated Aug 4, 2024
CVE-2019-6837
CVE-2019-6837
Description
A Server-Side Request Forgery (SSRF): CWE-918 vulnerability exists in U.motion Server (MEG6501-0001 - U.motion KNX server, MEG6501-0002 - U.motion KNX Server Plus, MEG6260-0410 - U.motion KNX Server Plus, Touch 10, MEG6260-0415 - U.motion KNX Server Plus, Touch 15), which could cause server configuration data to be exposed when an attacker modifies a URL.
Affected products
2- CVE-2019-6837/U.motion Serverv5Range: MEG6501-0001 - U.motion KNX server
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
1- www.schneider-electric.com/ww/en/download/document/SEVD-2019-253-01mitrex_refsource_CONFIRM
News mentions
0No linked articles in our index yet.