2019 CVE Vulnerabilities

17,620 CVEs published in 2019.

CVE IDSeverityCVSSDescription
CVE-2019-13521HIGH7.8A maliciously crafted program file opened by an unsuspecting user of Rockwell Automation Arena Simulation Software versi...
CVE-2019-13519HIGH7.8A maliciously crafted program file opened by an unsuspecting user of Rockwell Automation Arena Simulation Software versi...
CVE-2019-8947MEDIUM6.1Zimbra Collaboration 8.7.x - 8.8.11P2 contains non-persistent XSS.
CVE-2019-8946MEDIUM6.1Zimbra Collaboration 8.7.x - 8.8.11P2 contains persistent XSS.
CVE-2019-8945MEDIUM6.1Zimbra Collaboration 8.7.x - 8.8.11P2 contains persistent XSS.
CVE-2019-19539MEDIUM5.5An issue was discovered in Idelji Web ViewPoint H01ABO-H01BY and L01ABP-L01ABZ, Web ViewPoint Plus H01AAG-H01AAQ and L01...
CVE-2019-19143MEDIUM6.1TP-LINK TL-WR849N 0.9.1 4.16 devices do not require authentication to replace the firmware via a POST request to the cgi...
CVE-2019-15313MEDIUM6.1In Zimbra Collaboration before 8.8.15 Patch 1, there is a non-persistent XSS vulnerability.
CVE-2019-12427MEDIUM4.8Zimbra Collaboration before 8.8.15 Patch 1 is vulnerable to a non-persistent XSS via the Admin Console.
CVE-2019-11318MEDIUM5.4Zimbra Collaboration before 8.8.12 Patch 1 has persistent XSS.
CVE-2019-11288HIGH7In Pivotal tc Server, 3.x versions prior to 3.2.19 and 4.x versions prior to 4.0.10, and Pivotal tc Runtimes, 7.x versio...
CVE-2019-19824HIGH8.8On certain TOTOLINK Realtek SDK based routers, an authenticated attacker may execute arbitrary OS commands via the sysCm...
CVE-2019-19823HIGH7.5A certain router administration interface (that includes Realtek APMIB 0.11f for Boa 0.94.14rc21) stores cleartext admin...
CVE-2019-19822HIGH7.5A certain router administration interface (that includes Realtek APMIB 0.11f for Boa 0.94.14rc21) allows remote attacker...
CVE-2019-17099HIGH7.8An Untrusted Search Path vulnerability in EPSecurityService.exe as used in Bitdefender Endpoint Security Tools versions ...
CVE-2019-17095CRITICAL9.8A command injection vulnerability has been discovered in the bootstrap stage of Bitdefender BOX 2, versions 2.1.47.42 an...
CVE-2019-17094HIGH7.8A Stack-based Buffer Overflow vulnerability in libbelkin_api.so component of Belkin WeMo Insight Switch firmware allows ...
CVE-2019-19825CRITICAL9.8On certain TOTOLINK Realtek SDK based routers, the CAPTCHA text can be retrieved via an {"topicurl":"setting/getSanvas"}...
CVE-2019-17096CRITICAL9.8A OS Command Injection vulnerability in the bootstrap stage of Bitdefender BOX 2 allows the manipulation of the `get_ima...
CVE-2019-17190HIGH7.8A Local Privilege Escalation issue was discovered in Avast Secure Browser 76.0.1659.101. The vulnerability is due to an ...
CVE-2019-20433CRITICAL9.1libaspell.a in GNU Aspell before 0.60.8 has a buffer over-read for a string ending with a single '\0' byte, if the encod...
CVE-2019-17103MEDIUM5.5An Incorrect Default Permissions vulnerability in the BDLDaemon component of Bitdefender AV for Mac allows an attacker t...
CVE-2019-17102HIGH8.1An exploitable command execution vulnerability exists in the recovery partition of Bitdefender BOX 2, version 2.0.1.91. ...
CVE-2019-17100MEDIUM6.5An Untrusted Search Path vulnerability in bdserviceshost.exe as used in Bitdefender Total Security 2020 allows an attack...
CVE-2019-6036MEDIUM6.1Cross-site scripting vulnerability in F-RevoCRM 6.0 to F-RevoCRM 6.5 patch6 (version 6 series) allows remote attackers t...

Check if your code is affected by 2019 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now