2019 CVE Vulnerabilities
17,619 CVEs published in 2019.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2019-18202 | MEDIUM | 5.3 | 1.8% | Oct 19, 2019 | Information Disclosure is possible on WAGO Series PFC100 and PFC200 devices before FW12 due to improper access control. ... |
| CVE-2019-4409 | MEDIUM | 5.4 | 0.5% | Oct 18, 2019 | HCL Traveler versions 9.x and earlier are susceptible to cross-site scripting attacks. On the Problem Report page of the... |
| CVE-2019-17207 | MEDIUM | 5.4 | 1.6% | Oct 18, 2019 | A reflected XSS vulnerability was found in includes/admin/table-printer.php in the broken-link-checker (aka Broken Link ... |
| CVE-2019-8190 | MEDIUM | 4.3 | 2.0% | Oct 17, 2019 | Adobe Acrobat and Reader versions , 2019.012.20040 and earlier, 2017.011.30148 and earlier, 2017.011.30148 and earlier, ... |
| CVE-2019-8189 | MEDIUM | 4.3 | 2.0% | Oct 17, 2019 | Adobe Acrobat and Reader versions , 2019.012.20040 and earlier, 2017.011.30148 and earlier, 2017.011.30148 and earlier, ... |
| CVE-2019-8188 | MEDIUM | 4.3 | 2.8% | Oct 17, 2019 | Adobe Acrobat and Reader versions , 2019.012.20040 and earlier, 2017.011.30148 and earlier, 2017.011.30148 and earlier, ... |
| CVE-2019-8187 | MEDIUM | 4.3 | 2.8% | Oct 17, 2019 | Adobe Acrobat and Reader versions , 2019.012.20040 and earlier, 2017.011.30148 and earlier, 2017.011.30148 and earlier, ... |
| CVE-2019-8173 | MEDIUM | 4.3 | 2.0% | Oct 17, 2019 | Adobe Acrobat and Reader versions , 2019.012.20040 and earlier, 2017.011.30148 and earlier, 2017.011.30148 and earlier, ... |
| CVE-2019-8172 | MEDIUM | 4.3 | 2.0% | Oct 17, 2019 | Adobe Acrobat and Reader versions , 2019.012.20040 and earlier, 2017.011.30148 and earlier, 2017.011.30148 and earlier, ... |
| CVE-2019-8163 | MEDIUM | 4.3 | 2.0% | Oct 17, 2019 | Adobe Acrobat and Reader versions , 2019.012.20040 and earlier, 2017.011.30148 and earlier, 2017.011.30148 and earlier, ... |
| CVE-2019-8160 | MEDIUM | 6.1 | 1.2% | Oct 17, 2019 | Adobe Acrobat and Reader versions , 2019.012.20040 and earlier, 2017.011.30148 and earlier, 2017.011.30148 and earlier, ... |
| CVE-2019-8064 | MEDIUM | 4.3 | 2.0% | Oct 17, 2019 | Adobe Acrobat and Reader versions , 2019.012.20040 and earlier, 2017.011.30148 and earlier, 2017.011.30148 and earlier, ... |
| CVE-2019-17120 | MEDIUM | 6.1 | 50.0% | Oct 17, 2019 | A stored and reflected cross-site scripting (XSS) vulnerability in WiKID 2FA Enterprise Server through 4.2.0-b2047 allow... |
| CVE-2019-12611 | MEDIUM | 4.4 | 0.3% | Oct 17, 2019 | An issue was discovered in Bitdefender BOX firmware versions before 2.1.37.37-34 that affects the general reliability of... |
| CVE-2019-17116 | MEDIUM | 6.1 | 1.7% | Oct 17, 2019 | A stored and reflected cross-site scripting (XSS) vulnerability in WiKID 2FA Enterprise Server through 4.2.0-b2047 allow... |
| CVE-2019-17115 | MEDIUM | 6.1 | 1.7% | Oct 17, 2019 | Multiple cross-site scripting (XSS) vulnerabilities in WiKID 2FA Enterprise Server through 4.2.0-b2047 allow remote atta... |
| CVE-2019-17114 | MEDIUM | 6.1 | 1.7% | Oct 17, 2019 | A stored and reflected cross-site scripting (XSS) vulnerability in WiKID 2FA Enterprise Server through 4.2.0-b2047 allow... |
| CVE-2019-16330 | MEDIUM | 5.4 | 0.6% | Oct 17, 2019 | In NCH Express Accounts Accounting v7.02, persistent cross site scripting (XSS) exists in Invoices/Sales Orders/Items/Cu... |
| CVE-2019-14424 | MEDIUM | 6.5 | 1.4% | Oct 17, 2019 | A Local File Inclusion (LFI) issue in the addon CUx-Daemon 1.11a of the eQ-3 Homematic CCU-Firmware 2.35.16 until 2.45.6... |
| CVE-2019-17674 | MEDIUM | 5.4 | 1.6% | Oct 17, 2019 | WordPress before 5.2.4 is vulnerable to stored XSS (cross-site scripting) via the Customizer. |
| CVE-2019-17672 | MEDIUM | 6.1 | 1.8% | Oct 17, 2019 | WordPress before 5.2.4 is vulnerable to a stored XSS attack to inject JavaScript into STYLE elements. |
| CVE-2019-17671 | MEDIUM | 5.3 | 36.5% | Oct 17, 2019 | In WordPress before 5.2.4, unauthenticated viewing of certain content is possible because the static query property is m... |
| CVE-2019-17668 | MEDIUM | 6.8 | 0.4% | Oct 17, 2019 | Samsung Galaxy S10 and Note10 devices allow unlock operations via unregistered fingerprints in certain situations involv... |
| CVE-2019-17667 | MEDIUM | 5.4 | 0.5% | Oct 17, 2019 | Comtech H8 Heights Remote Gateway 2.5.1 devices allow XSS and HTML injection via the Site Name (aka SiteName) field. |
| CVE-2019-17611 | MEDIUM | 6.1 | 1.0% | Oct 16, 2019 | HongCMS 3.0.0 has XSS via the install/index.php tableprefix parameter. |
Check if your code is affected by 2019 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now