Skip to content
COOEY

EXPOSURES › CVE-2019-7256

CVE-2019-7256

HIGH ⌖ ON CISA KEV · EXPLOITED
DETAIL
SourceCISA-KEV · kev Published2024-03-25 Referencehttps://nvd.nist.gov/vuln/detail/CVE-2019-7256 ↗
⚡ RCE ⌖ EXPLOITED IN THE WILD SHAME 85/100 rceexploited-in-wildransomware

Nice Linear eMerge E3-Series devices allow remote code execution via OS command injection.

The eMerge E3-Series contains a critical OS command injection vulnerability enabling remote code execution, which poses a severe risk to DIB organizations relying on this hardware for secure operations. This flaw is actively exploited in the wild and linked to ransomware campaigns, making it a high-priority remediation for compliance and security posture.

Shame score — The vulnerability is actively exploited in the wild and linked to ransomware, indicating a failure to patch a known critical flaw.

▸ RECOMMENDED ACTION  Actively exploited (CISA KEV) — remediate now, ahead of your normal patch cycle.

DESCRIPTION

Nice Linear eMerge E3-Series contains an OS command injection vulnerability that allows an attacker to conduct remote code execution.

AFFECTED FEDRAMP PRODUCTS · 1
PRODUCTSTATUS
NICE inContact CXone Customer Experience Platform
NICE inContact
Authorized