AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2019-19681

HIGH · CVSS 8.8 EPSS 4.56% Public Exploit

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2019-12-26 · Last synced 2026-08-04

CyberRota Analysis

AI analysis pending.

Public Exploit Signal

A public exploit, PoC, GitHub repository or Metasploit reference was detected for this CVE.

Detected Signals
remote code execution code execution

Note: these links are listed for security research and verification purposes only.

CVE
CVE-2019-19681
Severity
HIGH
CVSS
8.8
EPSS
4.56%

Original NVD Description

Pandora FMS 7.x suffers from remote code execution vulnerability. With an authenticated user who can modify the alert system, it is possible to define and execute commands as root/Administrator. NOTE: The product vendor states that the vulnerability as it is described is not in fact an actual vulnerability. They state that to be able to create alert commands, you need to have admin rights. They also state that the extended ACL system can disable access to specific sections of the configuration, such as defining new alert commands