VYPR
High severity8.8NVD Advisory· Published Mar 20, 2020· Updated Jun 17, 2026

CVE-2019-16071

CVE-2019-16071

Description

Enigma NMS 65.0.0 and prior allows administrative users to create low-privileged accounts that do not have the ability to modify any settings in the system, only view the components. However, it is possible for a low-privileged user to perform all actions as an administrator by bypassing authorization controls and sending requests to the server in the context of an administrator.

Affected products

2

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.