CVE-2019-15719: Altair Pbs Professional
High severity, CVSS 8.0. EPSS: 2% chance of exploitation in the next 30 days.
Altair PBS Professional through 19.1.2 allows Privilege Escalation because an attacker can send a message directly to pbs_mom, which fails to properly authenticate the message. This results in code execution as an arbitrary user.
Affected products
- Altair Pbs Professional: from 13.0.0, before 13.0.412 (fixed in 13.0.412); from 14.0.0, before 14.2.7 (fixed in 14.2.7); from 18.0.0, before 18.2.5 (fixed in 18.2.5); from 19.1.0, before 19.1.3 (fixed in 19.1.3); from 19.2.0, before 19.2.4 (fixed in 19.2.4)
Published 2019-10-09. Last modified 2026-06-17.