CVE-2019-5891: Overit Geocall

Critical severity, CVSS 9.8. EPSS: 1.6% chance of exploitation in the next 30 days.

An issue was discovered in OverIT Geocall 6.3 before build 2:346977. An unauthenticated servlet allows an attacker to obtain a cookie of an authenticated user, and login to the web application.

Affected products

  • Overit Geocall: version 6.3 only

Published 2019-04-01. Last modified 2026-06-17.