High severity7.5NVD Advisory· Published Aug 22, 2019· Updated Jun 17, 2026
CVE-2019-14511
CVE-2019-14511
Description
Sphinx Technologies Sphinx 3.1.1 by default has no authentication and listens on 0.0.0.0, making it exposed to the internet (unless filtered by a firewall or reconfigured to listen to 127.0.0.1 only).
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
4- Sphinx Technologies/Sphinxdescription
- Range: <3.1.1
- Range: <3.1.1
- cpe:2.3:a:sphinxsearch:sphinx:3.1.1:*:*:*:*:*:*:*
Patches
Vulnerability mechanics
References
6- blog.wirhabenstil.de/2019/08/19/sphinxsearch-0-0-0-09306-cve-2019-14511/nvdExploitThird Party Advisory
- sphinxsearch.com/docs/sphinx3.htmlnvdVendor Advisory
- sphinxsearch.com/blog/nvdRelease Notes
- lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/3FPPNZZMWTZOMFGFETMET6YKIH2DQDKS/nvd
- lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/XD25JJJVM7FFXAO2L3ZG2KXQ6UMFBIA4/nvd
- lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/YSLPW44RWIGHU5AG3P4U2HPSD3UBG4GJ/nvd
News mentions
0No linked articles in our index yet.