CVE-2019-19288: Siemens Xhq

Medium severity, CVSS 6.1. EPSS: 0.6% chance of exploitation in the next 30 days.

A vulnerability has been identified in XHQ (All Versions < 6.1). The web interface could allow Cross-Site Scripting (XSS) attacks if unsuspecting users are tricked into accessing a malicious link.

Affected products

  • Siemens Xhq: before 6.1.0.0 (fixed in 6.1.0.0)

Published 2020-12-14. Last modified 2026-06-17.