2019 CVE Vulnerabilities

17,619 CVEs published in 2019.

Filter:CRITICALClear
CVE IDSeverityCVSSDescription
CVE-2019-19148CRITICAL9.8Tellabs Optical Line Terminal (OLT) 1150 devices allow Remote Command Execution via the -l option to TELNET or SSH. Tell...
CVE-2019-16072CRITICAL9.8An OS command injection vulnerability in the discover_and_manage CGI script in NETSAS Enigma NMS 65.0.0 and prior allows...
CVE-2019-16064CRITICAL9.6NETSAS Enigma NMS 65.0.0 and prior suffers from a directory traversal vulnerability that can allow an authenticated user...
CVE-2019-12127CRITICAL9.8In ONAP OOM through Dublin, by accessing an applicable port (30234, 30290, 32010, 30270, 30224, 30281, 30254, 30285, and...
CVE-2019-12126CRITICAL9.8In ONAP DCAE through Dublin, by accessing an applicable port (30234, 30290, 32010, 30270, 30224, 30281, 30254, 30285, an...
CVE-2019-12125CRITICAL9.8In ONAP Logging through Dublin, by accessing an applicable port (30234, 30290, 32010, 30270, 30224, 30281, 30254, 30285,...
CVE-2019-16382CRITICAL9.8An issue was discovered in Ivanti Workspace Control 10.3.110.0. One is able to bypass Ivanti's FileGuard folder protecti...
CVE-2019-12130CRITICAL9.8In ONAP CLI through Dublin, by accessing an applicable port (30234, 30290, 32010, 30270, 30224, 30281, 30254, 30285, and...
CVE-2019-12129CRITICAL9.8In ONAP MSB through Dublin, by accessing an applicable port (30234, 30290, 32010, 30270, 30224, 30281, 30254, 30285, and...
CVE-2019-12128CRITICAL9.8In ONAP SO through Dublin, by accessing an applicable port (30234, 30290, 32010, 30270, 30224, 30281, 30254, 30285, and/...
CVE-2019-19676CRITICAL9.6A CSV injection in arxes-tolina 3.0.0 allows malicious users to gain remote control of other computers. By entering form...
CVE-2019-12132CRITICAL9.8An issue was discovered in ONAP SDNC before Dublin. By executing sla/dgUpload with a crafted filename parameter, an unau...
CVE-2019-12131CRITICAL9.1An issue was detected in ONAP APPC through Dublin and SDC through Dublin. By setting a USER_ID parameter in an HTTP head...
CVE-2019-12124CRITICAL9.1An issue was discovered in ONAP APPC before Dublin. By using an exposed unprotected Jolokia interface, an unauthenticate...
CVE-2019-12120CRITICAL9.8An issue was discovered in ONAP VNFSDK through Dublin. By accessing port 8000 of demo-vnfsdk-vnfsdk, an unauthenticated ...
CVE-2019-12119CRITICAL9.8An issue was discovered in ONAP SDC through Dublin. By accessing port 7000 of demo-sdc-sdc-wfd-fe pod, an unauthenticate...
CVE-2019-12118CRITICAL9.8An issue was discovered in ONAP SDC through Dublin. By accessing port 7001 of demo-sdc-sdc-wfd-be pod, an unauthenticate...
CVE-2019-12117CRITICAL9.8An issue was discovered in ONAP SDC through Dublin. By accessing port 4001 of demo-sdc-sdc-onboarding-be pod, an unauthe...
CVE-2019-12116CRITICAL9.8An issue was discovered in ONAP SDC through Dublin. By accessing port 6000 of demo-sdc-sdc-fe pod, an unauthenticated at...
CVE-2019-12115CRITICAL9.8An issue was discovered in ONAP SDC through Dublin. By accessing port 4000 of demo-sdc-sdc-be pod, an unauthenticated at...
CVE-2019-12114CRITICAL9.8An issue was discovered in ONAP HOLMES before Dublin. By accessing port 9202 of dep-holmes-engine-mgmt pod, an unauthent...
CVE-2019-12112CRITICAL9.8An issue was discovered in ONAP SDNC before Dublin. By executing sla/upload with a crafted filename parameter, an unauth...
CVE-2019-20498CRITICAL9.8cPanel before 82.0.18 allows WebDAV authentication bypass because the connection-sharing logic is incorrect (SEC-534).
CVE-2019-19212CRITICAL9.8Dolibarr ERP/CRM 3.0 through 10.0.3 allows XSS via the qty parameter to product/fournisseurs.php (product price screen).
CVE-2019-19208CRITICAL9.8Codiad Web IDE through 2.8.4 allows PHP Code injection.

Check if your code is affected by 2019 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now