2019 CVE Vulnerabilities
17,620 CVEs published in 2019.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2019-12365 | MEDIUM | 6.1 | 1.0% | Mar 18, 2020 | The Newton application through 10.0.23 for Android allows XSS via an event attribute and arbitrary file loading via a sr... |
| CVE-2019-12132 | CRITICAL | 9.8 | 1.5% | Mar 18, 2020 | An issue was discovered in ONAP SDNC before Dublin. By executing sla/dgUpload with a crafted filename parameter, an unau... |
| CVE-2019-12131 | CRITICAL | 9.1 | 1.2% | Mar 18, 2020 | An issue was detected in ONAP APPC through Dublin and SDC through Dublin. By setting a USER_ID parameter in an HTTP head... |
| CVE-2019-12124 | CRITICAL | 9.1 | 1.2% | Mar 18, 2020 | An issue was discovered in ONAP APPC before Dublin. By using an exposed unprotected Jolokia interface, an unauthenticate... |
| CVE-2019-12123 | HIGH | 8.8 | 1.3% | Mar 18, 2020 | An issue was discovered in ONAP SDNC before Dublin. By executing sla/printAsXml with a crafted module parameter, an auth... |
| CVE-2019-12122 | MEDIUM | 6.5 | 0.6% | Mar 18, 2020 | An issue was discovered in ONAP Portal through Dublin. By executing a call to ONAPPORTAL/portalApi/loggedinUser, an atta... |
| CVE-2019-12121 | HIGH | 7.5 | 0.7% | Mar 18, 2020 | An issue was detected in ONAP Portal through Dublin. By executing a padding oracle attack using the ONAPPORTAL/processSi... |
| CVE-2019-12120 | CRITICAL | 9.8 | 2.1% | Mar 18, 2020 | An issue was discovered in ONAP VNFSDK through Dublin. By accessing port 8000 of demo-vnfsdk-vnfsdk, an unauthenticated ... |
| CVE-2019-12119 | CRITICAL | 9.8 | 2.1% | Mar 18, 2020 | An issue was discovered in ONAP SDC through Dublin. By accessing port 7000 of demo-sdc-sdc-wfd-fe pod, an unauthenticate... |
| CVE-2019-12118 | CRITICAL | 9.8 | 2.1% | Mar 18, 2020 | An issue was discovered in ONAP SDC through Dublin. By accessing port 7001 of demo-sdc-sdc-wfd-be pod, an unauthenticate... |
| CVE-2019-12117 | CRITICAL | 9.8 | 2.1% | Mar 18, 2020 | An issue was discovered in ONAP SDC through Dublin. By accessing port 4001 of demo-sdc-sdc-onboarding-be pod, an unauthe... |
| CVE-2019-12116 | CRITICAL | 9.8 | 2.1% | Mar 18, 2020 | An issue was discovered in ONAP SDC through Dublin. By accessing port 6000 of demo-sdc-sdc-fe pod, an unauthenticated at... |
| CVE-2019-12115 | CRITICAL | 9.8 | 2.1% | Mar 18, 2020 | An issue was discovered in ONAP SDC through Dublin. By accessing port 4000 of demo-sdc-sdc-be pod, an unauthenticated at... |
| CVE-2019-12114 | CRITICAL | 9.8 | 2.1% | Mar 18, 2020 | An issue was discovered in ONAP HOLMES before Dublin. By accessing port 9202 of dep-holmes-engine-mgmt pod, an unauthent... |
| CVE-2019-12113 | HIGH | 8.8 | 1.3% | Mar 18, 2020 | An issue was discovered in ONAP SDNC before Dublin. By executing sla/printAsGv with a crafted module parameter, an authe... |
| CVE-2019-12112 | CRITICAL | 9.8 | 1.5% | Mar 18, 2020 | An issue was discovered in ONAP SDNC before Dublin. By executing sla/upload with a crafted filename parameter, an unauth... |
| CVE-2019-19355 | HIGH | 7 | 0.2% | Mar 18, 2020 | An insecure modification vulnerability in the /etc/passwd file was found in the openshift/ocp-release-operator-sdk. An a... |
| CVE-2019-19351 | HIGH | 7 | 0.2% | Mar 18, 2020 | An insecure modification vulnerability in the /etc/passwd file was found in the container openshift/jenkins. An attacker... |
| CVE-2019-19335 | MEDIUM | 4.4 | 0.3% | Mar 18, 2020 | During installation of an OpenShift 4 cluster, the `openshift-install` command line tool creates an `auth` directory, wi... |
| CVE-2019-14871 | MEDIUM | 6.5 | 1.0% | Mar 18, 2020 | The REENT_CHECK macro (see newlib/libc/include/sys/reent.h) as used by REENT_CHECK_TM, REENT_CHECK_MISC, REENT_CHECK_MP ... |
| CVE-2019-10178 | MEDIUM | 6.1 | 1.0% | Mar 18, 2020 | It was found that the Token Processing Service (TPS) did not properly sanitize the Token IDs from the "Activity" page, e... |
| CVE-2019-11689 | HIGH | 8.1 | 3.2% | Mar 18, 2020 | An issue was discovered in ASUSTOR exFAT Driver through 1.0.0.r20. When conducting license validation, exfat.cgi and exf... |
| CVE-2019-11688 | HIGH | 7.4 | 1.1% | Mar 18, 2020 | An issue was discovered in ASUSTOR exFAT Driver through 1.0.0.r20. When conducting license validation, exfat.cgi and exf... |
| CVE-2019-10682 | HIGH | 7.5 | 1.0% | Mar 18, 2020 | django-nopassword before 5.0.0 stores cleartext secrets in the database. |
| CVE-2019-10146 | MEDIUM | 4.7 | 0.7% | Mar 18, 2020 | A Reflected Cross Site Scripting flaw was found in all pki-core 10.x.x versions module from the pki-core server due to t... |
Check if your code is affected by 2019 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now