2019 CVE Vulnerabilities
17,619 CVEs published in 2019.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2019-13974 | — | — | 0.6% | Jul 19, 2019 | LayerBB 1.1.3 allows conversations.php/cmd/new CSRF. |
| CVE-2019-13973 | — | — | 1.8% | Jul 19, 2019 | LayerBB 1.1.3 allows admin/general.php arbitrary file upload because the custom_logo filename suffix is not restricted, ... |
| CVE-2019-13972 | — | — | 0.9% | Jul 19, 2019 | LayerBB 1.1.3 allows XSS via the application/commands/new.php pm_title variable, a related issue to CVE-2019-17997. |
| CVE-2019-13971 | — | — | 0.8% | Jul 19, 2019 | OTCMS 3.81 allows XSS via the mode parameter in an apiRun.php?mudi=autoRun request. |
| CVE-2019-13970 | — | — | 1.9% | Jul 19, 2019 | In antSword before 2.1.0, self-XSS in the database configuration leads to code execution via modules/database/asp/index.... |
| CVE-2019-13969 | — | — | 1.3% | Jul 19, 2019 | Metinfo 6.x allows SQL Injection via the id parameter in an admin/index.php?n=ui_set&m=admin&c=index&a=doget_text_conten... |
| CVE-2019-7963 | — | — | 2.9% | Jul 18, 2019 | Adobe Bridge CC version 9.0.2 and earlier versions have an out of bound read vulnerability. Successful exploitation coul... |
| CVE-2019-7956 | — | — | 3.3% | Jul 18, 2019 | Adobe Dreamweaver direct download installer versions 19.0 and below, 18.0 and below have an Insecure Library Loading (DL... |
| CVE-2019-7955 | — | — | 2.1% | Jul 18, 2019 | Adobe Experience Manager version 6.4 and ealier have a Reflected Cross-site Scripting vulnerability. Successful exploita... |
| CVE-2019-7954 | — | — | 1.7% | Jul 18, 2019 | Adobe Experience Manager version 6.4 and ealier have a Stored Cross-site Scripting vulnerability. Successful exploitatio... |
| CVE-2019-7953 | — | — | 2.8% | Jul 18, 2019 | Adobe Experience Manager version 6.4 and ealier have a Cross-Site Request Forgery vulnerability. Successful exploitation... |
| CVE-2019-7941 | — | — | 3.1% | Jul 18, 2019 | Adobe Campaign Classic version 18.10.5-8984 and earlier versions have an Information Exposure Through an Error Message v... |
| CVE-2019-7850 | — | — | 5.8% | Jul 18, 2019 | Adobe Campaign Classic version 18.10.5-8984 and earlier versions have a Command injection vulnerability. Successful expl... |
| CVE-2019-7848 | — | — | 3.1% | Jul 18, 2019 | Adobe Campaign Classic version 18.10.5-8984 and earlier versions have an Inadequate access control vulnerability. Succes... |
| CVE-2019-7847 | — | — | 3.3% | Jul 18, 2019 | Adobe Campaign Classic version 18.10.5-8984 and earlier versions have an Improper Restriction of XML External Entity Ref... |
| CVE-2019-7846 | — | — | 3.1% | Jul 18, 2019 | Adobe Campaign Classic version 18.10.5-8984 and earlier versions have an Improper error handling vulnerability. Successf... |
| CVE-2019-7843 | — | — | 3.2% | Jul 18, 2019 | Adobe Campaign Classic version 18.10.5-8984 and earlier versions have an Insufficient input validation vulnerability. Su... |
| CVE-2019-13961 | — | — | 2.3% | Jul 18, 2019 | A CSRF vulnerability was found in flatCore before 1.5, leading to the upload of arbitrary .php files via acp/core/files.... |
| CVE-2019-8286 | — | — | 2.7% | Jul 18, 2019 | Information Disclosure in Kaspersky Anti-Virus, Kaspersky Internet Security, Kaspersky Total Security versions up to 201... |
| CVE-2019-13960 | — | — | 1.0% | Jul 18, 2019 | In libjpeg-turbo 2.0.2, a large amount of memory can be used during processing of an invalid progressive JPEG image cont... |
| CVE-2019-13959 | — | — | 1.2% | Jul 18, 2019 | In Bento4 1.5.1-627, AP4_DataBuffer::SetDataSize does not handle reallocation failures, leading to a memory copy into a ... |
| CVE-2019-1010279 | — | — | 1.5% | Jul 18, 2019 | Open Information Security Foundation Suricata prior to version 4.1.3 is affected by: Denial of Service - TCP/HTTP detect... |
| CVE-2019-1010246 | — | — | 1.4% | Jul 18, 2019 | MailCleaner before c888fbb6aaa7c5f8400f637bcf1cbb844de46cd9 is affected by: Unauthenticated MySQL database password info... |
| CVE-2019-1010112 | — | — | 0.7% | Jul 18, 2019 | OECMS v4.3.R60321 and v4.3 later is affected by: Cross Site Request Forgery (CSRF). The impact is: The victim clicks on ... |
| CVE-2019-13956 | — | — | 4.6% | Jul 18, 2019 | Discuz!ML 3.2 through 3.4 allows remote attackers to execute arbitrary PHP code via a modified language cookie, as demon... |
Check if your code is affected by 2019 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now