CVE-2019-3816 is an arbitrary file disclosure vulnerability affecting Openwsman versions up to 2.6.9, as well as products from Fedora, openSUSE, and Red Hat. A remote, unauthenticated attacker can exploit this flaw by sending a specially crafted HTTP request, leveraging the daemon's root working directory to access sensitive files. With a CVSS score of 7.5 (High), this vulnerability presents a significant risk of data confidentiality compromise. While no public exploit code (Metasploit, Nuclei, ExploitDB) is readily available and it's not listed in CISA's KEV catalog, there's limited community discussion and media coverage, suggesting it's not widely exploited in the wild.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
<= 2.6.9CPE matchmatch criteria | cpe:2.3:a:openwsman_project:openwsman:*:*:*:*:*:*:*:* | ||
8.0CPE matchmatch criteria | cpe:2.3:o:redhat:enterprise_linux:8.0:*:*:*:*:*:*:* | ||
7.0CPE matchmatch criteria | cpe:2.3:o:redhat:enterprise_linux_desktop:7.0:*:*:*:*:*:*:* | ||
8.1CPE matchmatch criteria | cpe:2.3:o:redhat:enterprise_linux_eus:8.1:*:*:*:*:*:*:* | ||
8.2CPE matchmatch criteria | cpe:2.3:o:redhat:enterprise_linux_eus:8.2:*:*:*:*:*:*:* |
CVSS version used by this source: 3.0
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.1 Mastodon, and 0.4 GitHub mentions.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
CVE-2019-3816
Dec 10, 2024CVE-2019-3816
Nov 12, 2024CVE-2019-3816
Oct 8, 2024Openwsman versions up to and including 2.6.9 are vulnerable to arbitrary file disclosure because the working directory of openwsmand daemon was set to root directory. A remote unauthenticated attacker can exploit this vulnerability by sending a specially crafted HTTP request to openwsman server.
Mar 12, 2019openwsman: Disclosure of arbitrary files outside of the registered URIs
Mar 12, 2019