CVE-2019-14481: Adremsoft Netcrunch

Medium severity, CVSS 5.4. EPSS: 0.4% chance of exploitation in the next 30 days.

AdRem NetCrunch 10.6.0.4587 has a Cross-Site Request Forgery (CSRF) vulnerability in the NetCrunch web client. Successful exploitation requires a logged-in user to open a malicious page and leads to account takeover.

Affected products

  • Adremsoft Netcrunch: version 10.6.0.4587 only

Published 2020-12-16. Last modified 2026-06-17.