CVE-2019-7672: Primasystems Flexair

High severity, CVSS 8.8. EPSS: 2.4% chance of exploitation in the next 30 days.

Prima Systems FlexAir, Versions 2.3.38 and prior. The flash version of the web interface contains a hard-coded username and password, which may allow an authenticated attacker to escalate privileges.

Affected products

Published 2019-06-05. Last modified 2026-06-17.