CVE-2019-3980 is a vulnerability in SolarWinds Dameware Mini Remote Control
Published on October 8, 2019
The Solarwinds Dameware Mini Remote Client agent v12.1.0.89 supports smart card authentication which can allow a user to upload an executable to be executed on the DWRCS.exe host. An unauthenticated, remote attacker can request smart card login and upload and execute an arbitrary executable run under the Local System account.
Products Associated with CVE-2019-3980
Want to know whenever a new CVE is published for SolarWinds Dameware Mini Remote Control? stack.watch will email you.
Exploit Probability
EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.