CVE-2019-5982: Sony Vaio Update

High severity, CVSS 7.5. EPSS: 0.4% chance of exploitation in the next 30 days.

Improper download file verification vulnerability in VAIO Update 7.3.0.03150 and earlier allows remote attackers to conduct a man-in-the-middle attack via a malicous wireless LAN access point. A successful exploitation may result in a malicious file being downloaded/executed.

Affected products

  • Sony Vaio Update: up to and including 7.3.0.03150

Published 2019-07-05. Last modified 2026-06-17.