vendor:
eMerge50P/5000P
by:
LiquidWorm
9.8
CVSS
CRITICAL
Remote Code Execution
78
CWE
Product Name: eMerge50P/5000P
Affected Version From: 4.6.07
Affected Version To: 4.6.07
Patch Exists: YES
Related CWE: CVE-2019-7266, CVE-2019-7267, CVE-2019-7268, CVE-2019-7269
CPE: a:linear_solutions:emerge50p_5000p
Metasploit:
N/A
Other Scripts:
N/A
Platforms Tested: macOS 10.13.6
2018
eMerge50P 5000P 4.6.07 – Remote Code Execution
This exploit allows for full remote code execution on the Linear eMerge50P/5000P 4.6.07, including escalating to root privileges. It is tested on macOS 10.13.6 and requires a custom session file to be uploaded and executed.
Mitigation:
Update to the latest version of the eMerge50P/5000P software.