CVE-2019-16067: Netsas Enigma Network Management Solution

High severity, CVSS 7.5. EPSS: 0.8% chance of exploitation in the next 30 days.

NETSAS Enigma NMS 65.0.0 and prior utilises basic authentication over HTTP for enforcing access control to the web application. The use of weak authentication transmitted over cleartext protocols can allow an attacker to steal username and password combinations by intercepting authentication traffic in transit.

Affected products

  • Netsas Enigma Network Management Solution: up to and including 65.0.0

Published 2020-03-19. Last modified 2026-06-17.