2019 CVE Vulnerabilities
17,619 CVEs published in 2019.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2019-12992 | — | — | 48.9% | Jul 16, 2019 | Citrix SD-WAN 10.2.x before 10.2.3 and NetScaler SD-WAN 10.0.x before 10.0.8 have Improper Input Validation (issue 6 of ... |
| CVE-2019-12990 | — | — | 39.3% | Jul 16, 2019 | Citrix SD-WAN 10.2.x before 10.2.3 and NetScaler SD-WAN 10.0.x before 10.0.8 allow Directory Traversal. |
| CVE-2019-12988 | — | — | 42.6% | Jul 16, 2019 | Citrix SD-WAN 10.2.x before 10.2.3 and NetScaler SD-WAN 10.0.x before 10.0.8 have Improper Input Validation (issue 4 of ... |
| CVE-2019-12987 | — | — | 43.9% | Jul 16, 2019 | Citrix SD-WAN 10.2.x before 10.2.3 and NetScaler SD-WAN 10.0.x before 10.0.8 have Improper Input Validation (issue 3 of ... |
| CVE-2019-12986 | — | — | 39.5% | Jul 16, 2019 | Citrix SD-WAN 10.2.x before 10.2.3 and NetScaler SD-WAN 10.0.x before 10.0.8 have Improper Input Validation (issue 2 of ... |
| CVE-2019-12985 | — | — | 42.6% | Jul 16, 2019 | Citrix SD-WAN 10.2.x before 10.2.3 and NetScaler SD-WAN 10.0.x before 10.0.8 have Improper Input Validation (issue 1 of ... |
| CVE-2019-13618 | — | — | 2.3% | Jul 16, 2019 | In GPAC before 0.8.0, isomedia/isom_read.c in libgpac.a has a heap-based buffer over-read, as demonstrated by a crash in... |
| CVE-2019-13617 | — | — | 1.3% | Jul 16, 2019 | njs through 0.3.3, used in NGINX, has a heap-based buffer over-read in nxt_vsprintf in nxt/nxt_sprintf.c during error ha... |
| CVE-2019-13615 | — | — | 2.5% | Jul 16, 2019 | libebml before 1.3.6, as used in the MKV module in VideoLAN VLC Media Player binaries before 3.0.3, has a heap-based buf... |
| CVE-2019-13605 | — | — | 15.3% | Jul 16, 2019 | In CentOS-WebPanel.com (aka CWP) CentOS Web Panel 0.9.8.838 to 0.9.8.846, remote attackers can bypass authentication in ... |
| CVE-2019-13360 | — | — | 24.4% | Jul 16, 2019 | In CentOS-WebPanel.com (aka CWP) CentOS Web Panel 0.9.8.836, remote attackers can bypass authentication in the login pro... |
| CVE-2019-1010292 | — | — | 1.5% | Jul 16, 2019 | Linaro/OP-TEE OP-TEE Prior to version v3.4.0 is affected by: Boundary checks. The impact is: This could lead to corrupti... |
| CVE-2019-1010290 | — | — | 4.1% | Jul 16, 2019 | Babel: Multilingual site Babel All is affected by: Open Redirection. The impact is: Redirection to any URL, which is sup... |
| CVE-2019-1010048 | — | — | — | Jul 16, 2019 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Fu... |
| CVE-2019-1010043 | — | — | 2.3% | Jul 16, 2019 | Quake3e < 5ed740d is affected by: Buffer Overflow. The impact is: Possible code execution and denial of service. The com... |
| CVE-2019-13612 | — | — | 1.3% | Jul 16, 2019 | MDaemon Email Server 19 through 20.0.1 skips SpamAssassin checks by default for e-mail messages larger than 2 MB (and li... |
| CVE-2019-1010062 | — | — | 1.8% | Jul 16, 2019 | PluckCMS 4.7.4 and earlier is affected by: CWE-434 Unrestricted Upload of File with Dangerous Type. The impact is: get w... |
| CVE-2019-1010061 | — | — | — | Jul 16, 2019 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2018-10364. Reason: This candidate is a reservation d... |
| CVE-2019-1010060 | — | — | 7.2% | Jul 16, 2019 | NASA CFITSIO prior to 3.43 is affected by: Buffer Overflow. The impact is: arbitrary code execution. The component is: o... |
| CVE-2019-1010018 | — | — | 1.3% | Jul 16, 2019 | Zammad GmbH Zammad 2.3.0 and earlier is affected by: Cross Site Scripting (XSS) - CWE-80. The impact is: Execute java sc... |
| CVE-2019-13611 | — | — | 0.8% | Jul 16, 2019 | An issue was discovered in python-engineio through 3.8.2. There is a Cross-Site WebSocket Hijacking (CSWSH) vulnerabilit... |
| CVE-2019-1136 | — | — | 3.4% | Jul 15, 2019 | An elevation of privilege vulnerability exists in Microsoft Exchange Server, aka 'Microsoft Exchange Server Elevation of... |
| CVE-2019-1128 | — | — | 16.9% | Jul 15, 2019 | A remote code execution vulnerability exists in the way that DirectWrite handles objects in memory, aka 'DirectWrite Rem... |
| CVE-2019-1127 | — | — | 20.6% | Jul 15, 2019 | A remote code execution vulnerability exists in the way that DirectWrite handles objects in memory, aka 'DirectWrite Rem... |
| CVE-2019-1126 | — | — | 4.9% | Jul 15, 2019 | A security feature bypass vulnerability exists in Active Directory Federation Services (ADFS) which could allow an attac... |
Check if your code is affected by 2019 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now