Security Advisory
CVE-2019-19895
CVE vulnerability detail — eXtreme Datacenter Security Operations
Description
In IXP EasyInstall 6.2.13723, there is Lateral Movement (using the Agent Service) against other users on a client system. An authenticated attacker can, by modifying %SYSTEMDRIVE%IXPSW[PACKAGE_CODE]EveryLogon.bat, achieve this movement and execute code in the context of other users.