2019 CVE Vulnerabilities
17,619 CVEs published in 2019.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2019-0075 | HIGH | 7.5 | 1.3% | Oct 9, 2019 | A vulnerability in the srxpfe process on Protocol Independent Multicast (PIM) enabled SRX series devices may lead to cra... |
| CVE-2019-0073 | HIGH | 7.1 | 0.3% | Oct 9, 2019 | The PKI keys exported using the command "run request security pki key-pair export" on Junos OS may have insecure file pe... |
| CVE-2019-0071 | HIGH | 7.8 | 0.2% | Oct 9, 2019 | Veriexec is a kernel-based file integrity subsystem in Junos OS that ensures only authorized binaries are able to be exe... |
| CVE-2019-0070 | HIGH | 8.8 | 0.4% | Oct 9, 2019 | An Improper Input Validation weakness allows a malicious local attacker to elevate their permissions to take control of ... |
| CVE-2019-0068 | HIGH | 7.5 | 1.3% | Oct 9, 2019 | The SRX flowd process, responsible for packet forwarding, may crash and restart when processing specific multicast packe... |
| CVE-2019-0066 | HIGH | 7.5 | 1.4% | Oct 9, 2019 | An unexpected status return value weakness in the Next-Generation Multicast VPN (NG-mVPN) service of Juniper Networks Ju... |
| CVE-2019-0065 | HIGH | 7.5 | 1.3% | Oct 9, 2019 | On MX Series, when the SIP ALG is enabled, receipt of a certain malformed SIP packet may crash the MS-PIC component on M... |
| CVE-2019-0064 | HIGH | 7.5 | 1.3% | Oct 9, 2019 | On SRX5000 Series devices, if 'set security zones security-zone <zone> tcp-rst' is configured, the flowd process may cra... |
| CVE-2019-0063 | HIGH | 7.5 | 1.3% | Oct 9, 2019 | When an MX Series Broadband Remote Access Server (BRAS) is configured as a Broadband Network Gateway (BNG) with DHCPv6 e... |
| CVE-2019-0062 | HIGH | 8.8 | 1.1% | Oct 9, 2019 | A session fixation vulnerability in J-Web on Junos OS may allow an attacker to use social engineering techniques to fix ... |
| CVE-2019-0061 | HIGH | 7.8 | 0.4% | Oct 9, 2019 | The management daemon (MGD) is responsible for all configuration and management operations in Junos OS. The Junos CLI co... |
| CVE-2019-0060 | HIGH | 7.5 | 1.3% | Oct 9, 2019 | The flowd process, responsible for forwarding traffic in SRX Series services gateways, may crash and restart when proces... |
| CVE-2019-0059 | HIGH | 7.5 | 1.3% | Oct 9, 2019 | A memory leak vulnerability in the of Juniper Networks Junos OS allows an attacker to cause a Denial of Service (DoS) to... |
| CVE-2019-0058 | HIGH | 7.8 | 0.3% | Oct 9, 2019 | A vulnerability in the Veriexec subsystem of Juniper Networks Junos OS allowing an attacker to fully compromise the host... |
| CVE-2019-0057 | HIGH | 7.8 | 0.4% | Oct 9, 2019 | An improper authorization weakness in Juniper Networks Junos OS allows a local authenticated attacker to bypass regular ... |
| CVE-2019-0056 | HIGH | 7.5 | 1.3% | Oct 9, 2019 | This issue only affects devices with three (3) or more MPC10's installed in a single chassis with OSPF enabled and confi... |
| CVE-2019-0055 | HIGH | 7.5 | 1.3% | Oct 9, 2019 | A vulnerability in the SIP ALG packet processing service of Juniper Networks Junos OS allows an attacker to cause a Deni... |
| CVE-2019-0054 | HIGH | 7.4 | 0.6% | Oct 9, 2019 | An Improper Certificate Validation weakness in the SRX Series Application Identification (app-id) signature update clien... |
| CVE-2019-0051 | HIGH | 7.5 | 1.1% | Oct 9, 2019 | SSL-Proxy feature on SRX devices fails to handle a hardware resource limitation which can be exploited by remote SSL/TLS... |
| CVE-2019-0050 | HIGH | 7.5 | 1.3% | Oct 9, 2019 | Under certain heavy traffic conditions srxpfe process can crash and result in a denial of service condition for the SRX1... |
| CVE-2019-0047 | HIGH | 8.8 | 1.6% | Oct 9, 2019 | A persistent Cross-Site Scripting (XSS) vulnerability in Junos OS J-Web interface may allow remote unauthenticated attac... |
| CVE-2019-17389 | HIGH | 7.5 | 1.4% | Oct 9, 2019 | In RIOT 2019.07, the MQTT-SN implementation (asymcute) mishandles errors occurring during a read operation on a UDP sock... |
| CVE-2019-6469 | HIGH | 7.5 | 1.9% | Oct 9, 2019 | An error in the EDNS Client Subnet (ECS) feature for recursive resolvers can cause BIND to exit with an assertion failur... |
| CVE-2019-6468 | HIGH | 7.5 | 2.5% | Oct 9, 2019 | In BIND Supported Preview Edition, an error in the nxdomain-redirect feature can occur in versions which support EDNS Cl... |
| CVE-2019-6467 | HIGH | 7.5 | 5.4% | Oct 9, 2019 | A programming error in the nxdomain-redirect feature can cause an assertion failure in query.c if the alternate namespac... |
Check if your code is affected by 2019 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now