2019 CVE Vulnerabilities
17,620 CVEs published in 2019.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2019-4596 | MEDIUM | 5.4 | 0.6% | Feb 26, 2020 | IBM Sterling B2B Integrator Standard Edition 5.2.0.0 through 5.2.6.5 is vulnerable to cross-site scripting. This vulnera... |
| CVE-2019-4537 | MEDIUM | 5.3 | 1.1% | Feb 26, 2020 | IBM WebSphere Service Registry and Repository 8.5 could allow a user to obtain sensitive version information that could ... |
| CVE-2019-19994 | CRITICAL | 9.8 | 4.8% | Feb 26, 2020 | An issue was discovered in Selesta Visual Access Manager (VAM) 4.15.0 through 4.29. It allows blind Command Injection. A... |
| CVE-2019-19993 | MEDIUM | 5.3 | 1.2% | Feb 26, 2020 | An issue was discovered in Selesta Visual Access Manager (VAM) 4.15.0 through 4.29. Several full path disclosure vulnera... |
| CVE-2019-19992 | MEDIUM | 6.5 | 1.1% | Feb 26, 2020 | An issue was discovered in Selesta Visual Access Manager (VAM) 4.15.0 through 4.29. A user with valid credentials is abl... |
| CVE-2019-19991 | MEDIUM | 5.4 | 0.9% | Feb 26, 2020 | An issue was discovered in Selesta Visual Access Manager (VAM) 4.15.0 through 4.29. Multiple Reflected Cross-site script... |
| CVE-2019-19990 | MEDIUM | 5.4 | 0.9% | Feb 26, 2020 | An issue was discovered in Selesta Visual Access Manager (VAM) 4.15.0 through 4.29. Multiple Stored Cross-site scripting... |
| CVE-2019-19989 | HIGH | 7.5 | 1.3% | Feb 26, 2020 | An issue was discovered in Selesta Visual Access Manager (VAM) 4.15.0 through 4.29. Several PHP pages, and other type of... |
| CVE-2019-19988 | HIGH | 8.8 | 1.5% | Feb 26, 2020 | An issue was discovered in Selesta Visual Access Manager (VAM) 4.15.0 through 4.29. A user with valid credentials is abl... |
| CVE-2019-19987 | MEDIUM | 6.5 | 0.5% | Feb 26, 2020 | An issue was discovered in Selesta Visual Access Manager (VAM) 4.15.0 through 4.29. It allows Cross-Site Request Forgery... |
| CVE-2019-19986 | HIGH | 7.5 | 1.3% | Feb 26, 2020 | An issue was discovered in Selesta Visual Access Manager (VAM) 4.15.0 through 4.29. An attacker without authentication i... |
| CVE-2019-3796 | — | — | — | Feb 26, 2020 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Fu... |
| CVE-2019-19134 | MEDIUM | 6.1 | 5.7% | Feb 26, 2020 | The Hero Maps Premium plugin 2.2.1 and prior for WordPress is prone to unauthenticated XSS via the views/dashboard/index... |
| CVE-2019-4000 | HIGH | 7.8 | 0.7% | Feb 25, 2020 | Improper neutralization of directives in dynamically evaluated code in Druva inSync Mac OS Client 6.5.0 allows a local, ... |
| CVE-2019-3999 | HIGH | 7.8 | 8.6% | Feb 25, 2020 | Improper neutralization of special elements used in an OS command in Druva inSync Windows Client 6.5.0 allows a local, u... |
| CVE-2019-12863 | MEDIUM | 4.8 | 1.1% | Feb 25, 2020 | SolarWinds Orion Platform 2018.4 HF3 (NPM 12.4, NetPath 1.1.4) allows Stored HTML Injection by administrators via the We... |
| CVE-2019-5165 | HIGH | 7.2 | 2.2% | Feb 25, 2020 | An exploitable authentication bypass vulnerability exists in the hostname processing of the Moxa AWK-3131A firmware vers... |
| CVE-2019-5162 | HIGH | 8.8 | 2.7% | Feb 25, 2020 | An exploitable improper access control vulnerability exists in the iw_webs account settings functionality of the Moxa AW... |
| CVE-2019-5153 | HIGH | 8.8 | 4.6% | Feb 25, 2020 | An exploitable remote code execution vulnerability exists in the iw_webs configuration parsing functionality of the Moxa... |
| CVE-2019-5148 | HIGH | 7.5 | 2.5% | Feb 25, 2020 | An exploitable denial-of-service vulnerability exists in ServiceAgent functionality of the Moxa AWK-3131A, firmware vers... |
| CVE-2019-5143 | HIGH | 8.8 | 4.7% | Feb 25, 2020 | An exploitable format string vulnerability exists in the iw_console conio_writestr functionality of the Moxa AWK-3131A f... |
| CVE-2019-5142 | HIGH | 7.2 | 6.9% | Feb 25, 2020 | An exploitable command injection vulnerability exists in the hostname functionality of the Moxa AWK-3131A firmware versi... |
| CVE-2019-5141 | HIGH | 8.8 | 5.1% | Feb 25, 2020 | An exploitable command injection vulnerability exists in the iw_webs functionality of the Moxa AWK-3131A firmware versio... |
| CVE-2019-5140 | HIGH | 8.8 | 2.9% | Feb 25, 2020 | An exploitable command injection vulnerability exists in the iwwebs functionality of the Moxa AWK-3131A firmware version... |
| CVE-2019-5139 | HIGH | 7.1 | 0.3% | Feb 25, 2020 | An exploitable use of hard-coded credentials vulnerability exists in multiple iw_* utilities of the Moxa AWK-3131A firmw... |
Check if your code is affected by 2019 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now