2019 CVE Vulnerabilities

17,624 CVEs published in 2019.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2019-6810HIGH8.8CWE-284: Improper Access Control vulnerability exists in BMXNOR0200H Ethernet / Serial RTU module (all firmware versions...
CVE-2019-6809HIGH7.5A CWE-248: Uncaught Exception vulnerability exists in Modicon M580 (firmware versions prior to V2.90), Modicon M340 (fir...
CVE-2019-13538HIGH8.63S-Smart Software Solutions GmbH CODESYS V3 Library Manager, all versions prior to 3.5.16.0, allows the system to displa...
CVE-2019-11665HIGH7.5Data exposure in Micro Focus Service Manager product versions 9.30, 9.31, 9.32, 9.33, 9.34, 9.35, 9.40, 9.41, 9.50, 9.51...
CVE-2019-4183HIGH7.5IBM Cognos Analytics 11.0, and 11.1 is vulnerable to a denial of service attack that could allow a remote user to send s...
CVE-2019-4175HIGH7.5IBM Cognos Controller 10.3.0, 10.3.1, 10.4.0, and 10.4.1 uses weaker than expected cryptographic algorithms that could a...
CVE-2019-11666HIGH8.8Insecure deserialization of untrusted data in Micro Focus Service Manager product versions 9.30, 9.31, 9.32, 9.33, 9.34,...
CVE-2019-11667HIGH7.5Unauthorized access to contact information in Micro Focus Service Manager, versions 9.41, 9.50, 9.51, 9.52, 9.60, 9.61, ...
CVE-2019-9009HIGH7.5An issue was discovered in 3S-Smart CODESYS before 3.5.15.0 . Crafted network packets cause the Control Runtime to crash...
CVE-2019-14835HIGH7.8A buffer overflow flaw was found, in versions from 2.6.34 to 5.2.x, in the way Linux kernel's vhost functionality that t...
CVE-2019-15729HIGH7.5An issue was discovered in GitLab Community and Enterprise Edition 8.18 through 12.2.1. An internal endpoint unintention...
CVE-2019-9008HIGH8.8An issue was discovered in 3S-Smart CODESYS V3 through 3.5.12.30. A user with low privileges can take full control over ...
CVE-2019-4147HIGH7.2IBM Sterling File Gateway 2.2.0.0 through 6.0.1.0 is vulnerable to SQL injection. A remote attacker could send specially...
CVE-2019-16371HIGH8.2LogMeIn LastPass before 4.33.0 allows attackers to construct a crafted web site that captures the credentials for a vict...
CVE-2019-15736HIGH7.5An issue was discovered in GitLab Community and Enterprise Edition through 12.2.1. Under certain circumstances, CI pipel...
CVE-2019-8371HIGH7.2OpenEMR v5.0.1-6 allows code execution.
CVE-2019-15730HIGH7.5An issue was discovered in GitLab Community and Enterprise Edition 8.14 through 12.2.1. The Jira integration contains a ...
CVE-2019-15728HIGH7.5An issue was discovered in GitLab Community and Enterprise Edition 10.1 through 12.2.1. Protections against SSRF attacks...
CVE-2019-15725HIGH7.5An issue was discovered in GitLab Community and Enterprise Edition 12.0 through 12.2.1. An IDOR in the epic notes API th...
CVE-2019-15722HIGH7.5An issue was discovered in GitLab Community and Enterprise Edition 8.15 through 12.2.1. Particular mathematical expressi...
CVE-2019-0207HIGH7.5Tapestry processes assets `/assets/ctx` using classes chain `StaticFilesFilter -> AssetDispatcher -> ContextResource`, w...
CVE-2019-16353HIGH7.5Emerson GE Automation Proficy Machine Edition 8.0 allows an access violation and application crash via crafted traffic f...
CVE-2019-16347HIGH8.8ngiflib 0.4 has a heap-based buffer overflow in WritePixels() in ngiflib.c when called from DecodeGifImg, because deinte...
CVE-2019-16346HIGH8.8ngiflib 0.4 has a heap-based buffer overflow in WritePixel() in ngiflib.c when called from DecodeGifImg, because deinter...
CVE-2019-16170HIGH7.1An issue was discovered in GitLab Enterprise Edition 11.x and 12.x before 12.0.9, 12.1.x before 12.1.9, and 12.2.x befor...

Check if your code is affected by 2019 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now