{ "schema_version": "1.4.0", "id": "GHSA-wrx9-6qv7-wvvw", "modified": "2022-05-24T17:15:54Z", "published": "2022-05-24T17:15:54Z", "aliases": [ "CVE-2019-19108" ], "details": "An authentication weakness in the SNMP service in B&R Automation Runtime versions 2.96, 3.00, 3.01, 3.06 to 3.10, 4.00 to 4.63, 4.72 and above allows unauthenticated users to modify the configuration of B&R products via SNMP.", "severity": [], "affected": [], "references": [ { "type": "ADVISORY", "url": "https://nvd.nist.gov/vuln/detail/CVE-2019-19108" }, { "type": "WEB", "url": "https://www.br-automation.com/en/downloads/012020-automation-runtime-snmp-authentication-weakness" }, { "type": "WEB", "url": "https://www.us-cert.gov/ics/advisories/icsa-20-051-01" } ], "database_specific": { "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2020-04-20T22:15:00Z" } }