2019 CVE Vulnerabilities

17,619 CVEs published in 2019.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2019-12671HIGH7.8A vulnerability in the CLI of Cisco IOS XE Software could allow an authenticated, local attacker to gain shell access on...
CVE-2019-12669HIGH7.5A vulnerability in the RADIUS Change of Authorization (CoA) code of Cisco TrustSec, a feature within Cisco IOS XE Softwa...
CVE-2019-12665HIGH7.4A vulnerability in the HTTP client feature of Cisco IOS and IOS XE Software could allow an unauthenticated, remote attac...
CVE-2019-12664HIGH7.5A vulnerability in the Dialer interface feature for ISDN connections in Cisco IOS XE Software for Cisco 4000 Series Inte...
CVE-2019-12663HIGH8.6A vulnerability in the Cisco TrustSec (CTS) Protected Access Credential (PAC) provisioning module of Cisco IOS XE Softwa...
CVE-2019-12659HIGH7.5A vulnerability in the HTTP server code of Cisco IOS XE Software could allow an unauthenticated, remote attacker to caus...
CVE-2019-12658HIGH7.5A vulnerability in the filesystem resource management code of Cisco IOS XE Software could allow an unauthenticated, remo...
CVE-2019-12657HIGH7.5A vulnerability in Unified Threat Defense (UTD) in Cisco IOS XE Software could allow an unauthenticated, remote attacker...
CVE-2019-12656HIGH7.5A vulnerability in the IOx application environment of multiple Cisco platforms could allow an unauthenticated, remote at...
CVE-2019-12655HIGH7.5A vulnerability in the FTP application layer gateway (ALG) functionality used by Network Address Translation (NAT), NAT ...
CVE-2019-12654HIGH7.5A vulnerability in the common Session Initiation Protocol (SIP) library of Cisco IOS and IOS XE Software could allow an ...
CVE-2019-12653HIGH7.5A vulnerability in the Raw Socket Transport feature of Cisco IOS XE Software could allow an unauthenticated, remote atta...
CVE-2019-12652HIGH7.5A vulnerability in the ingress packet processing function of Cisco IOS Software for Cisco Catalyst 4000 Series Switches ...
CVE-2019-6656HIGH7.5BIG-IP APM Edge Client before version 7.1.8 (7180.2019.508.705) logs the full apm session ID in the log files. Vulnerabl...
CVE-2019-16889HIGH7.5Ubiquiti EdgeMAX devices before 2.0.3 allow remote attackers to cause a denial of service (disk consumption) because *.c...
CVE-2019-14666HIGH8.8GLPI through 9.4.3 is prone to account takeover by abusing the ajax/autocompletion.php autocompletion feature. The lack ...
CVE-2019-12651HIGH8.8Multiple vulnerabilities in the web-based user interface (Web UI) of Cisco IOS XE Software could allow an authenticated,...
CVE-2019-12650HIGH8.8Multiple vulnerabilities in the web-based user interface (Web UI) of Cisco IOS XE Software could allow an authenticated,...
CVE-2019-12648HIGH8.8A vulnerability in the IOx application environment for Cisco IOS Software could allow an authenticated, remote attacker ...
CVE-2019-12647HIGH7.5A vulnerability in the Ident protocol handler of Cisco IOS and IOS XE Software could allow an unauthenticated, remote at...
CVE-2019-12646HIGH7.5A vulnerability in the Network Address Translation (NAT) Session Initiation Protocol (SIP) Application Layer Gateway (AL...
CVE-2019-16887HIGH7.8In IrfanView 4.53, Data from a Faulting Address controls a subsequent Write Address starting at image00400000+0x00000000...
CVE-2019-16884HIGH7.5runc through 1.0.0-rc8, as used in Docker through 19.03.2-ce and other products, allows AppArmor restriction bypass beca...
CVE-2019-16882HIGH7.5An issue was discovered in the string-interner crate before 0.7.1 for Rust. It allows attackers to read from memory loca...
CVE-2019-16188HIGH7.1HCL AppScan Source before 9.03.13 is susceptible to XML External Entity (XXE) attacks in multiple locations. In particul...

Check if your code is affected by 2019 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now