CVE-2018-19233: Comparex Miss Marple

High severity, CVSS 7.8. EPSS: 0.6% chance of exploitation in the next 30 days.

COMPAREX Miss Marple Enterprise Edition before 2.0 allows local users to execute arbitrary code by reading the user name and encrypted password hard-coded in an Inventory Agent configuration file.

Affected products

  • Comparex Miss Marple: before 2.0 (fixed in 2.0)

Published 2018-12-20. Last modified 2026-06-17.