CVE-2019-16516: ConnectWise Control

Medium severity, CVSS 5.3. EPSS: 19.1% chance of exploitation in the next 30 days.

An issue was discovered in ConnectWise Control (formerly known as ScreenConnect) 19.3.25270.7185. There is a user enumeration vulnerability, allowing an unauthenticated attacker to determine with certainty if an account exists for a given username.

Affected products

  • ConnectWise Control: up to and including 19.2.24707; version 19.3.25270.7185 only

Published 2020-01-23. Last modified 2026-06-17.