CyberRota Analysis
This is a critical severity vulnerability with a CVSS score of 9.8. It may be remotely exploitable.
CVE
CVE-2019-19606
Severity
CRITICAL
CVSS
9.8
EPSS
2.35%
Original NVD Description
X-Plane before 11.41 has multiple improper path validations that could allow reading and writing files from/to arbitrary paths (or a leak of OS credentials to a remote system) via crafted network packets. This could be used to execute arbitrary commands on the system.
Related CVEs
Other vulnerabilities affecting the same vendor(s)