CVE advisoryCRITICAL
CVE-2019-1895
Cisco NFVIS VNC Authentication Bypass Vulnerability
Halo Surface Signal: 2 out of 5 — less likely to be public-facing.
A vulnerability in Cisco NFVIS's VNC console allows an unauthenticated, remote attacker to bypass authentication. If reachable, this could enable an attacker to intercept an administrator's VNC session request and gain administrative access to the device, potentially viewing or controlling the session.