Skip to content
COOEY

EXPOSURES › CVE-2019-19356

CVE-2019-19356

HIGH ⌖ ON CISA KEV · EXPLOITED
DETAIL
SourceCISA-KEV · kev Published2021-11-03 Referencehttps://nvd.nist.gov/vuln/detail/CVE-2019-19356 ↗
⚡ RCE ⌖ EXPLOITED IN THE WILD SHAME 78/100 rceexploited-in-wildunpatched

Netis WF2419 routers allow remote code execution as root via their web management page.

An unspecified vulnerability in Netis WF2419 devices enables attackers to execute arbitrary code as root through the web management interface. This is a critical failure for DIB organizations because it provides a direct path for ransomware or data exfiltration without requiring user interaction, and the device is already listed in CISA's KEV catalog as actively exploited. Organizations must immediately patch or replace these devices and ensure no such hardware is in their unmanaged network segments.

Shame score — The device is actively exploited in the wild (KEV) and allows root-level remote code execution, indicating a severe, avoidable security failure in a consumer-grade IoT device that should not be in a DIB environment.

▸ RECOMMENDED ACTION  Actively exploited (CISA KEV) — remediate now, ahead of your normal patch cycle.

DESCRIPTION

Netis WF2419 devices contains an unspecified vulnerability that allows an attacker to perform remote code execution as root through the router's web management page.

SENTIMENT · TRUSTED SOURCES
synthesis severe-fallout -0.60
Netis failed to secure its devices, allowing remote code execution as root, which is a critical security flaw with severe implications for network safety and user trust.
cooey ↗ severe-fallout -0.80
Netis is severely criticized for leaving a critical vulnerability unpatched, enabling remote code execution as root through its web management interface.
"Netis WF2419 devices contains an unspecified vulnerability that allows an attacker to perform remote code execution as root through the router's web management page."
AFFECTED FEDRAMP PRODUCTS · 0
No correlated FedRAMP products.