2019 CVE Vulnerabilities
17,619 CVEs published in 2019.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2019-25248 | HIGH | 8.7 | 0.4% | Dec 24, 2025 | Beward N100 M2.1.6.04C014 contains an unauthenticated vulnerability that allows remote attackers to access live video st... |
| CVE-2019-25246 | HIGH | 8.8 | 17.4% | Dec 24, 2025 | Beward N100 H.264 VGA IP Camera M2.1.6 contains an authenticated file disclosure vulnerability that allows attackers to ... |
| CVE-2019-25245 | HIGH | 8.8 | 0.2% | Dec 24, 2025 | Ross Video DashBoard 8.5.1 contains an elevation of privileges vulnerability that allows authenticated users to modify e... |
| CVE-2019-25243 | HIGH | 8.8 | 2.3% | Dec 24, 2025 | FaceSentry 6.4.8 contains an authenticated remote command injection vulnerability in pingTest.php and tcpPortTest.php sc... |
| CVE-2019-25239 | HIGH | 8.7 | 0.4% | Dec 24, 2025 | V-SOL GPON/EPON OLT Platform 2.03 contains an unauthenticated information disclosure vulnerability that allows attackers... |
| CVE-2019-25229 | HIGH | 8.8 | 0.3% | Dec 18, 2025 | An unrestricted file upload vulnerability in Kentico Xperience allows authenticated users with 'Read data' permissions t... |
| CVE-2019-25227 | HIGH | 8.7 | 0.5% | Nov 26, 2025 | Tellion HN-2204AP routers contain an unauthenticated configuration disclosure vulnerability in the /cgi-bin/system_confi... |
| CVE-2019-25226 | HIGH | 8.7 | 0.5% | Nov 26, 2025 | Dongyoung Media DM-AP240T/W wireless access points contain an unauthenticated configuration disclosure vulnerability in ... |
| CVE-2019-16536 | HIGH | 8.8 | 0.7% | May 21, 2025 | Stack overflow leading to DoS can be triggered by a malicious authenticated client in Clickhouse before 19.14.3.3. |
| CVE-2019-17659 | HIGH | 8.1 | 0.6% | Mar 17, 2025 | A use of hard-coded cryptographic key vulnerability in FortiSIEM version 5.2.6 may allow a remote unauthenticated attack... |
| CVE-2019-15690 | HIGH | 8.8 | 0.7% | Jan 24, 2025 | LibVNCServer 0.9.12 release and earlier contains heap buffer overflow vulnerability within the HandleCursorShape() funct... |
| CVE-2019-2483 | HIGH | 8.2 | 0.4% | Dec 24, 2024 | Vulnerability in the Oracle iStore product of Oracle E-Business Suite (component: Shopping Cart). Supported versions th... |
| CVE-2019-25220 | HIGH | 7.5 | 0.8% | Nov 18, 2024 | Bitcoin Core before 24.0.1 allows remote attackers to cause a denial of service (daemon crash) via a flood of low-diffic... |
| CVE-2019-20460 | HIGH | 8.8 | 0.2% | Nov 7, 2024 | An issue was discovered on Epson Expression Home XP255 20.08.FM10I8 devices. POST requests don't require (anti-)CSRF tok... |
| CVE-2019-20459 | HIGH | 8.4 | 0.3% | Nov 7, 2024 | An issue was discovered on Epson Expression Home XP255 20.08.FM10I8 devices. With the SNMPv1 public community, all value... |
| CVE-2019-20458 | HIGH | 8.8 | 0.4% | Nov 7, 2024 | An issue was discovered on Epson Expression Home XP255 20.08.FM10I8 devices. By default, the device comes (and functions... |
| CVE-2019-25219 | HIGH | 7.5 | 0.5% | Oct 29, 2024 | Asio C++ Library before 1.13.0 lacks a fallback error code in the case of SSL_ERROR_SYSCALL with no associated error inf... |
| CVE-2019-25215 | HIGH | 7.3 | 0.4% | Oct 16, 2024 | The ARI-Adminer plugin for WordPress is vulnerable to authorization bypass due to a lack of file access controls in near... |
| CVE-2019-25213 | HIGH | 7.5 | 2.7% | Oct 16, 2024 | The Advanced Access Manager plugin for WordPress is vulnerable to Unauthenticated Arbitrary File Read in versions up to,... |
| CVE-2019-6198 | HIGH | 7.8 | 0.1% | Jul 31, 2024 | A vulnerability was reported in Lenovo PC Manager prior to version 2.8.90.11211 that could allow a local attacker to esc... |
| CVE-2019-6197 | HIGH | 7.8 | 0.1% | Jul 31, 2024 | A vulnerability was reported in Lenovo PC Manager prior to version 2.8.90.11211 that could allow a local attacker to esc... |
| CVE-2019-16641 | HIGH | 8.4 | 0.3% | Jul 16, 2024 | An issue was found on the Ruijie EG-2000 series gateway. There is a buffer overflow in client.so. Consequently, an attac... |
| CVE-2019-16640 | HIGH | 7.5 | 0.4% | Jul 16, 2024 | An issue was found in upload.php on the Ruijie EG-2000 series gateway. A parameter passed to the class UploadFile is mis... |
| CVE-2019-16638 | HIGH | 7.5 | 0.4% | Jul 16, 2024 | An issue was found on the Ruijie EG-2000 series gateway. An attacker can easily dump cleartext stored passwords in /data... |
| CVE-2019-6268 | HIGH | 7.5 | 0.8% | Mar 8, 2024 | RAD SecFlow-2 devices with Hardware 0202, Firmware 4.1.01.63, and U-Boot 2010.12 allow URIs beginning with /.. for Direc... |
Check if your code is affected by 2019 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now