CVE-2019-12167: Emerson Liebert Challenger Firmware

Medium severity, CVSS 6.1. EPSS: 1.1% chance of exploitation in the next 30 days.

httpGetSet/httpGet.htm on Emerson Network Power Liebert Challenger 5.1E0.5 devices allows XSS via the statusstr parameter.

Affected products

  • Emerson Liebert Challenger Firmware: version 5.1e0.5 only

Published 2019-05-22. Last modified 2026-06-17.