← Vulnerability feed

Vulnerability record · CVE-2019-7265 · published 2 July 2019

CVE-2019-7265: Nortekcontrol linear emerge essential firmware hard-coded credentials vulnerability

Nortekcontrol · Linear Emerge Essential Firmware

Linear eMerge E3-Series devices allow Remote Code Execution (root access over SSH).

9.8 CVSS 3.1 Critical EPSS 23% · top 2.3% CWE-798 · Hard-coded credentials
9.8CVSS 3.1 base score, v2 10.0
23%EPSS exploitation probability, 30 days
NoNot in CISA KEV
2Affected product versions listed by NVD
6References, 2 tagged exploit
17 Jun 2026Last modified by NVD

Description

Linear eMerge E3-Series devices allow Remote Code Execution (root access over SSH).

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Affected products

2 vulnerable configurations from NVD's CPE data, grouped by vendor and product.

References

Track CVE-2019-7265 inside VULONE

Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.

Start free Open in platform

Related vulnerabilities

Same products first, then exploited flaws of the same weakness class.

9.8CVE-2019-7256Linear eMerge E3-Series access controllers OS command injectionLinear eMerge E3-Series access controller firmware is vulnerable to OS command injection (CWE-78), allowing commands to be run on the device. The fla…KEVEPSS 97%analysed10.0CVE-2019-7257Linear eMerge E3-Series unrestricted file uploadLinear eMerge E3-Series devices accept unrestricted file uploads, allowing an attacker to place arbitrary files on the system. Because the uploaded c…EPSS 70%analysed9.8CVE-2019-7252Nortekcontrol linear emerge essential firmware insecure default initialization vulnerabilityLinear eMerge E3-Series devices have Default Credentials.EPSS 4.9%9.8CVE-2019-7253Nortekcontrol linear emerge essential firmware path traversal vulnerabilityLinear eMerge E3-Series devices allow Directory Traversal.EPSS 3.0%9.8CVE-2019-7260Nortekcontrol linear emerge essential firmware insufficiently protected credentials vulnerabilityLinear eMerge E3-Series devices have Cleartext Credentials in a Database.EPSS 6.6%9.8CVE-2019-7261Nortekcontrol linear emerge essential firmware hard-coded credentials vulnerabilityLinear eMerge E3-Series devices have Hard-coded Credentials.EPSS 5.5%9.8CVE-2019-7264Nortekcontrol linear emerge essential firmware out-of-bounds write vulnerabilityLinear eMerge E3-Series devices allow a Stack-based Buffer Overflow on the ARM platform.EPSS 2.2%9.8CVE-2019-7263Nortekcontrol linear emerge essential firmware vulnerabilityLinear eMerge E3-Series devices have a Version Control Failure.EPSS 1.8%

Source: NIST National Vulnerability Database (record CVE-2019-7265), CISA KEV, FIRST EPSS (scores of 2026-09-26). This page is refreshed as NVD updates the record.