CVE-2019-12389: Anviz Firmware

High severity, CVSS 7.5. EPSS: 1.8% chance of exploitation in the next 30 days.

Anviz access control devices expose credentials (names and passwords) by allowing remote attackers to query this information without credentials via port tcp/5010.

Affected products

  • Anviz Anviz Firmware: affected versions not specified

Published 2019-12-02. Last modified 2026-06-17.