CVE-2019-9734: Aquaverde Aquarius CMS

High severity, CVSS 7.5. EPSS: 1.6% chance of exploitation in the next 30 days.

Aquarius CMS through 4.3.5 writes POST and GET parameters (including passwords) to a log file due to an overwriting of configuration parameters under certain circumstances.

Affected products

  • Aquaverde Aquarius CMS: up to and including 4.3.5

Published 2019-04-24. Last modified 2026-06-17.