CVE-2019-16072: Netsas Enigma Network Management Solution
Critical severity, CVSS 9.8. EPSS: 25.9% chance of exploitation in the next 30 days.
An OS command injection vulnerability in the discover_and_manage CGI script in NETSAS Enigma NMS 65.0.0 and prior allows an attacker to execute arbitrary code because of improper neutralization of shell metacharacters in the ip_address variable within an snmp_browser action.
Affected products
- Netsas Enigma Network Management Solution: up to and including 65.0.0
Published 2020-03-20. Last modified 2026-06-17.