Nice Linear eMerge E3-Series OS Command Injection Vulnerability

Added to KEV
2024-03-25
Federal due date
2024-04-15
Vendor
Nice
Product
Linear eMerge E3-Series
EPSS
100.0th percentile (score 0.944, as of 2026-06-08)
NVD CVSS v3.1
Ransomware use
Unknown
Upstream
https://nvd.nist.gov/vuln/detail/CVE-2019-7256

CISA short description

Nice Linear eMerge E3-Series contains an OS command injection vulnerability that allows an attacker to conduct remote code execution.

Required action

Contact the vendor for guidance on remediating firmware, per their advisory.

EPSS percentile is the FIRST.org exploit-probability ranking as of the date noted above; it moves daily. CVSS reflects NVD's analysis at time of publication.