CVE-2019-7670: Primasystems Flexair
High severity, CVSS 7.2. EPSS: 18.3% chance of exploitation in the next 30 days.
Prima Systems FlexAir, Versions 2.3.38 and prior. The application incorrectly neutralizes special elements that could modify the intended OS command when it is sent to a downstream component, which could allow attackers to execute commands directly on the operating system.
Affected products
- Primasystems Flexair: up to and including 2.3.38
Published 2019-07-01. Last modified 2026-06-17.