CVE CVE-2019-18234 Mappings

Equinox Control Expert all versions, is vulnerable to an SQL injection attack, which may allow an attacker to remotely execute arbitrary code.

Mappings

Capability ID Capability Description Mapping Type ATT&CK ID ATT&CK Name
CVE-2019-18234 Equinox Control Expert primary_impact T1059 Command and Scripting Interpreter
CVE-2019-18234 Equinox Control Expert secondary_impact T1005 Data from Local System
CVE-2019-18234 Equinox Control Expert secondary_impact T1505.003 Web Shell
CVE-2019-18234 Equinox Control Expert secondary_impact T1136 Create Account
CVE-2019-18234 Equinox Control Expert secondary_impact T1190 Exploit Public-Facing Application
CVE-2019-18234 Equinox Control Expert secondary_impact T1565.001 Stored Data Manipulation
CVE-2019-18234 Equinox Control Expert exploitation_technique T1133 External Remote Services