CVE-2019-19296: Siemens Sinvr 3 Central Control Server
Medium severity, CVSS 6.8. EPSS: 1.8% chance of exploitation in the next 30 days.
A vulnerability has been identified in SiNVR/SiVMS Video Server (All versions < V5.0.0). The two FTP services (default ports 21/tcp and 5411/tcp) of the SiVMS/SiNVR Video Server contain a path traversal vulnerability that could allow an authenticated remote attacker to access and download arbitrary files from the server, if the FTP services are enabled.
Affected products
Published 2020-03-10. Last modified 2026-06-17.