2019 CVE Vulnerabilities
17,619 CVEs published in 2019.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2019-1010152 | — | — | 2.4% | Jul 23, 2019 | zzcms 8.3 and earlier is affected by: File Delete to Code Execution. The impact is: getshell. The component is: user/man... |
| CVE-2019-1010150 | — | — | 2.4% | Jul 23, 2019 | zzcms 8.3 and earlier is affected by: File Delete to Code Execution. The impact is: getshell. The component is: /user/zs... |
| CVE-2019-1010149 | — | — | 2.5% | Jul 23, 2019 | zzcms version 8.3 and earlier is affected by: File Delete to Code Execution. The impact is: zzcms File Delete to Code Ex... |
| CVE-2019-1010148 | — | — | 2.3% | Jul 23, 2019 | zzcms version 8.3 and earlier is affected by: SQL Injection. The impact is: zzcms File Delete to Code Execution. |
| CVE-2019-14241 | — | — | 70.2% | Jul 23, 2019 | HAProxy through 2.0.2 allows attackers to cause a denial of service (ha_panic) via vectors related to htx_manage_client_... |
| CVE-2019-1010129 | — | — | — | Jul 23, 2019 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2019-1010127. Reason: This candidate is a reservation... |
| CVE-2019-1010123 | — | — | 1.2% | Jul 23, 2019 | MODX Revolution Gallery 1.7.0 is affected by: CWE-434: Unrestricted Upload of File with Dangerous Type. The impact is: C... |
| CVE-2019-14240 | — | — | 0.8% | Jul 23, 2019 | WCMS v0.3.2 has a CSRF vulnerability, with resultant directory traversal, to modify index.html via the /wex/html.php?fin... |
| CVE-2019-12552 | — | — | 1.5% | Jul 22, 2019 | In SweetScape 010 Editor 9.0.1, an integer overflow during the initialization of variables could allow an attacker to ca... |
| CVE-2019-12551 | — | — | 2.1% | Jul 22, 2019 | In SweetScape 010 Editor 9.0.1, improper validation of arguments in the internal implementation of the Memcpy function (... |
| CVE-2019-3414 | — | — | 0.5% | Jul 22, 2019 | All versions up to V1.19.20.02 of ZTE OTCP product are impacted by XSS vulnerability. Due to XSS, when an attacker invok... |
| CVE-2019-1010224 | — | — | — | Jul 22, 2019 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2018-19802. Reason: This candidate is a reservation d... |
| CVE-2019-1010223 | — | — | — | Jul 22, 2019 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2018-19800. Reason: This candidate is a reservation d... |
| CVE-2019-1010222 | — | — | — | Jul 22, 2019 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2018-19801. Reason: This candidate is a reservation d... |
| CVE-2019-1010220 | — | — | 1.3% | Jul 22, 2019 | tcpdump.org tcpdump 4.9.2 is affected by: CWE-126: Buffer Over-read. The impact is: May expose Saved Frame Pointer, Retu... |
| CVE-2019-13097 | — | — | 1.4% | Jul 22, 2019 | The application API of Cat Runner Decorate Home version 2.8.0 for Android does not sufficiently verify inputs that are a... |
| CVE-2019-13096 | — | — | 1.1% | Jul 22, 2019 | TronLink Wallet 2.2.0 stores user wallet keystore in plaintext and places them in insecure storage. An attacker can read... |
| CVE-2019-13100 | — | — | 0.8% | Jul 22, 2019 | The Send Anywhere application 9.4.18 for Android stores confidential information insecurely on the system (i.e., in clea... |
| CVE-2019-13099 | — | — | 0.8% | Jul 22, 2019 | The Momo application 2.1.9 for Android stores confidential information insecurely on the system (i.e., in cleartext), wh... |
| CVE-2019-13098 | — | — | 1.3% | Jul 22, 2019 | The user password via the registration form of TronLink Wallet 2.2.0 is stored in the log when the class CreateWalletTwo... |
| CVE-2019-1010232 | — | — | 1.0% | Jul 22, 2019 | Juniper juniper/libslax libslax latest version (as of commit 084ddf6ab4a55b59dfa9a53f9c5f14d192c4f8e5 Commits on Sep 1, ... |
| CVE-2019-1010237 | — | — | 1.7% | Jul 22, 2019 | Ilias 5.3 before 5.3.12; 5.2 before 5.2.21 is affected by: Cross Site Scripting (XSS) - CWE-79 Type 2: Stored XSS (or Pe... |
| CVE-2019-1010235 | — | — | 0.6% | Jul 22, 2019 | Frog CMS 1.1 is affected by: Cross Site Scripting (XSS). The impact is: Cookie stealing, Alert pop-up on page, Redirecti... |
| CVE-2019-1010234 | — | — | 1.7% | Jul 22, 2019 | The Linux Foundation ONOS 1.15.0 and ealier is affected by: Improper Input Validation. The impact is: The attacker can r... |
| CVE-2019-2292 | — | — | 0.2% | Jul 22, 2019 | Out of bound access can occur due to buffer copy without checking size of input received from WLAN firmware in Snapdrago... |
Check if your code is affected by 2019 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now