CVE-2019-13379: Avtech Room Alert 3e Firmware
High severity, CVSS 8.8. EPSS: 3% chance of exploitation in the next 30 days.
On AVTECH Room Alert 3E devices before 2.2.5, an attacker with access to the device's web interface may escalate privileges from an unauthenticated user to administrator by performing a cmd.cgi?action=ResetDefaults&src=RA reset and using the default credentials to get in.
Affected products
- Avtech Room Alert 3e Firmware: before 2.2.5 (fixed in 2.2.5)
Published 2019-07-07. Last modified 2026-06-17.