CVE-2019-19289: Siemens Xhq

High severity, CVSS 8.8. EPSS: 0.5% chance of exploitation in the next 30 days.

A vulnerability has been identified in XHQ (All Versions < 6.1). The web interface could allow a Cross-Site Request Forgery (CSRF) attack if an unsuspecting user is tricked into accessing a malicious link.

Affected products

  • Siemens Xhq: before 6.1.0.0 (fixed in 6.1.0.0)

Published 2020-12-14. Last modified 2026-06-17.