CVE-2019-3913 describes a command manipulation vulnerability in LabKey Server Community Edition versions prior to 18.3.0-61806.763. This flaw allows an authenticated, remote attacker with high privileges to unmount any drive on the system, resulting in a denial of service. While the CVSS score is 4.9 (Medium) due to the high privileges required, the attack complexity is low. There is no evidence of active exploitation, public exploit code (Metasploit, Nuclei, ExploitDB), or significant community discussion or media coverage surrounding this vulnerability.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
< 18.3.0-61806.763CPE matchmatch criteria | cpe:2.3:a:labkey:labkey_server:*:*:*:*:community:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
LabKey Server Community Edition Multiple Vulnerabilities
Jan 24, 2019LabKey Server Community Edition Multiple Vulnerabilities
Jan 24, 2019LabKey Server Community Edition Multiple Vulnerabilities
Jan 24, 2019