### [CVE-2019-19885](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-19885) ![](https://img.shields.io/static/v1?label=Product&message=n%2Fa&color=blue) ![](https://img.shields.io/static/v1?label=Version&message=n%2Fa&color=blue) ![](https://img.shields.io/static/v1?label=Vulnerability&message=n%2Fa&color=brighgreen) ### Description In Bender COMTRAXX, user authorization is validated for most, but not all, routes in the system. A user with knowledge about the routes can read and write configuration data without prior authorization. This affects COM465IP, COM465DP, COM465ID, CP700, CP907, and CP915 devices before 4.2.0. ### POC #### Reference - https://cert.vde.com/en-us/advisories/vde-2020-043 - https://cert.vde.com/en-us/advisories/vde-2020-043 #### Github No PoCs found on GitHub currently.