2019 CVE Vulnerabilities
17,620 CVEs published in 2019.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2019-13521 | HIGH | 7.8 | 5.6% | Jan 27, 2020 | A maliciously crafted program file opened by an unsuspecting user of Rockwell Automation Arena Simulation Software versi... |
| CVE-2019-13519 | HIGH | 7.8 | 5.6% | Jan 27, 2020 | A maliciously crafted program file opened by an unsuspecting user of Rockwell Automation Arena Simulation Software versi... |
| CVE-2019-8947 | MEDIUM | 6.1 | 1.4% | Jan 27, 2020 | Zimbra Collaboration 8.7.x - 8.8.11P2 contains non-persistent XSS. |
| CVE-2019-8946 | MEDIUM | 6.1 | 1.4% | Jan 27, 2020 | Zimbra Collaboration 8.7.x - 8.8.11P2 contains persistent XSS. |
| CVE-2019-8945 | MEDIUM | 6.1 | 1.4% | Jan 27, 2020 | Zimbra Collaboration 8.7.x - 8.8.11P2 contains persistent XSS. |
| CVE-2019-19539 | MEDIUM | 5.5 | 0.4% | Jan 27, 2020 | An issue was discovered in Idelji Web ViewPoint H01ABO-H01BY and L01ABP-L01ABZ, Web ViewPoint Plus H01AAG-H01AAQ and L01... |
| CVE-2019-19143 | MEDIUM | 6.1 | 3.8% | Jan 27, 2020 | TP-LINK TL-WR849N 0.9.1 4.16 devices do not require authentication to replace the firmware via a POST request to the cgi... |
| CVE-2019-15313 | MEDIUM | 6.1 | 1.0% | Jan 27, 2020 | In Zimbra Collaboration before 8.8.15 Patch 1, there is a non-persistent XSS vulnerability. |
| CVE-2019-12427 | MEDIUM | 4.8 | 1.0% | Jan 27, 2020 | Zimbra Collaboration before 8.8.15 Patch 1 is vulnerable to a non-persistent XSS via the Admin Console. |
| CVE-2019-11318 | MEDIUM | 5.4 | 1.1% | Jan 27, 2020 | Zimbra Collaboration before 8.8.12 Patch 1 has persistent XSS. |
| CVE-2019-11288 | HIGH | 7 | 0.3% | Jan 27, 2020 | In Pivotal tc Server, 3.x versions prior to 3.2.19 and 4.x versions prior to 4.0.10, and Pivotal tc Runtimes, 7.x versio... |
| CVE-2019-19824 | HIGH | 8.8 | 25.1% | Jan 27, 2020 | On certain TOTOLINK Realtek SDK based routers, an authenticated attacker may execute arbitrary OS commands via the sysCm... |
| CVE-2019-19823 | HIGH | 7.5 | 6.4% | Jan 27, 2020 | A certain router administration interface (that includes Realtek APMIB 0.11f for Boa 0.94.14rc21) stores cleartext admin... |
| CVE-2019-19822 | HIGH | 7.5 | 8.7% | Jan 27, 2020 | A certain router administration interface (that includes Realtek APMIB 0.11f for Boa 0.94.14rc21) allows remote attacker... |
| CVE-2019-17099 | HIGH | 7.8 | 0.7% | Jan 27, 2020 | An Untrusted Search Path vulnerability in EPSecurityService.exe as used in Bitdefender Endpoint Security Tools versions ... |
| CVE-2019-17095 | CRITICAL | 9.8 | 4.2% | Jan 27, 2020 | A command injection vulnerability has been discovered in the bootstrap stage of Bitdefender BOX 2, versions 2.1.47.42 an... |
| CVE-2019-17094 | HIGH | 7.8 | 0.5% | Jan 27, 2020 | A Stack-based Buffer Overflow vulnerability in libbelkin_api.so component of Belkin WeMo Insight Switch firmware allows ... |
| CVE-2019-19825 | CRITICAL | 9.8 | 29.6% | Jan 27, 2020 | On certain TOTOLINK Realtek SDK based routers, the CAPTCHA text can be retrieved via an {"topicurl":"setting/getSanvas"}... |
| CVE-2019-17096 | CRITICAL | 9.8 | 2.1% | Jan 27, 2020 | A OS Command Injection vulnerability in the bootstrap stage of Bitdefender BOX 2 allows the manipulation of the `get_ima... |
| CVE-2019-17190 | HIGH | 7.8 | 0.5% | Jan 27, 2020 | A Local Privilege Escalation issue was discovered in Avast Secure Browser 76.0.1659.101. The vulnerability is due to an ... |
| CVE-2019-20433 | CRITICAL | 9.1 | 1.7% | Jan 27, 2020 | libaspell.a in GNU Aspell before 0.60.8 has a buffer over-read for a string ending with a single '\0' byte, if the encod... |
| CVE-2019-17103 | MEDIUM | 5.5 | 0.3% | Jan 27, 2020 | An Incorrect Default Permissions vulnerability in the BDLDaemon component of Bitdefender AV for Mac allows an attacker t... |
| CVE-2019-17102 | HIGH | 8.1 | 1.9% | Jan 27, 2020 | An exploitable command execution vulnerability exists in the recovery partition of Bitdefender BOX 2, version 2.0.1.91. ... |
| CVE-2019-17100 | MEDIUM | 6.5 | 0.3% | Jan 27, 2020 | An Untrusted Search Path vulnerability in bdserviceshost.exe as used in Bitdefender Total Security 2020 allows an attack... |
| CVE-2019-6036 | MEDIUM | 6.1 | 0.8% | Jan 27, 2020 | Cross-site scripting vulnerability in F-RevoCRM 6.0 to F-RevoCRM 6.5 patch6 (version 6 series) allows remote attackers t... |
Check if your code is affected by 2019 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now