CyberRota Analysis
This is a high severity vulnerability with a CVSS score of 7.8. Exploitation may require the attacker to be authenticated.
CVE
CVE-2019-4001
Severity
HIGH
CVSS
7.8
EPSS
0.57%
Original NVD Description
Improper input validation in Druva inSync Client 6.5.0 allows a local, authenticated attacker to execute arbitrary NodeJS code.
Related CVEs
Other vulnerabilities affecting the same vendor(s)