CyberRota Analysis
This is a critical severity vulnerability with a CVSS score of 9.8. It may be remotely exploitable.
CVE
CVE-2019-3984
Severity
CRITICAL
CVSS
9.8
EPSS
3.77%
Original NVD Description
Blink XT2 Sync Module firmware prior to 2.13.11 allows remote attackers to execute arbitrary commands on the device due to improperly sanitized input when the device retrieves updates scripts from the internet.
Related CVEs
Other vulnerabilities affecting the same vendor(s)