2019 CVE Vulnerabilities
17,620 CVEs published in 2019.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2019-13265 | HIGH | 8.8 | 1.2% | Aug 27, 2019 | D-link DIR-825AC G1 devices have Insufficient Compartmentalization between a host network and a guest network that are e... |
| CVE-2019-13264 | HIGH | 8.8 | 1.2% | Aug 27, 2019 | D-link DIR-825AC G1 devices have Insufficient Compartmentalization between a host network and a guest network that are e... |
| CVE-2019-13263 | HIGH | 8.8 | 1.2% | Aug 27, 2019 | D-link DIR-825AC G1 devices have Insufficient Compartmentalization between a host network and a guest network that are e... |
| CVE-2019-11457 | HIGH | 8.8 | 1.1% | Aug 27, 2019 | Multiple CSRF issues exist in MicroPyramid Django CRM 0.2.1 via /change-password-by-admin/, /api/settings/add/, /cases/c... |
| CVE-2019-8460 | HIGH | 7.5 | 2.2% | Aug 26, 2019 | OpenBSD kernel version <= 6.5 can be forced to create long chains of TCP SACK holes that causes very expensive calls to ... |
| CVE-2019-15544 | HIGH | 7.5 | 3.8% | Aug 26, 2019 | An issue was discovered in the protobuf crate before 2.6.0 for Rust. Attackers can exhaust all memory via Vec::reserve c... |
| CVE-2019-12532 | HIGH | 7.8 | 0.4% | Aug 26, 2019 | Improper access control in the Insyde software tools may allow an authenticated user to potentially enable escalation of... |
| CVE-2019-15637 | HIGH | 8.1 | 14.3% | Aug 26, 2019 | Numerous Tableau products are vulnerable to XXE via a malicious workbook, extension, or data source, leading to informat... |
| CVE-2019-4513 | HIGH | 8.2 | 2.8% | Aug 26, 2019 | IBM Security Access Manager for Enterprise Single Sign-On 8.2.2 is vulnerable to an XML External Entity Injection (XXE) ... |
| CVE-2019-4448 | HIGH | 7.8 | 0.3% | Aug 26, 2019 | IBM DB2 High Performance Unload load for LUW 6.1, 6.1.0.1, 6.1.0.1 IF1, 6.1.0.2, 6.1.0.2 IF1, and 6.1.0.1 IF2 db2hpum an... |
| CVE-2019-4447 | HIGH | 7.8 | 0.4% | Aug 26, 2019 | IBM DB2 High Performance Unload load for LUW 6.1, 6.1.0.1, 6.1.0.1 IF1, 6.1.0.2, 6.1.0.2 IF1, and 6.1.0.1 IF2 db2hpum_de... |
| CVE-2019-15550 | HIGH | 7.5 | 1.4% | Aug 26, 2019 | An issue was discovered in the simd-json crate before 0.1.15 for Rust. There is an out-of-bounds read and an incorrect c... |
| CVE-2019-14307 | HIGH | 8.8 | 3.0% | Aug 26, 2019 | Several Ricoh printers have multiple buffer overflows parsing HTTP parameter settings for SNMP, which allow an attacker ... |
| CVE-2019-14305 | HIGH | 8.8 | 3.0% | Aug 26, 2019 | Several Ricoh printers have multiple buffer overflows parsing HTTP parameter settings for Wi-Fi, mDNS, POP3, SMTP, and n... |
| CVE-2019-15538 | HIGH | 7.5 | 3.9% | Aug 25, 2019 | An issue was discovered in xfs_setattr_nonsize in fs/xfs/xfs_iops.c in the Linux kernel through 5.2.9. XFS partially wed... |
| CVE-2019-11654 | HIGH | 7.5 | 2.6% | Aug 23, 2019 | Path traversal vulnerability in Micro Focus Verastream Host Integrator (VHI), versions 7.7 SP2 and earlier, The vulnerab... |
| CVE-2019-13423 | HIGH | 8.8 | 0.7% | Aug 23, 2019 | Search Guard Kibana Plugin versions before 5.6.8-7 and before 6.x.y-12 had an issue that an authenticated Kibana user co... |
| CVE-2019-5635 | HIGH | 7.5 | 0.4% | Aug 22, 2019 | A cleartext transmission of sensitive information vulnerability is present in Hickory Smart Ethernet Bridge from Belwith... |
| CVE-2019-15323 | HIGH | 7.5 | 2.0% | Aug 22, 2019 | The ad-inserter plugin before 2.4.20 for WordPress has path traversal. |
| CVE-2019-5638 | HIGH | 8.7 | 1.0% | Aug 21, 2019 | Rapid7 Nexpose versions 6.5.50 and prior suffer from insufficient session expiration when an administrator performs a se... |
| CVE-2019-11603 | HIGH | 7.5 | 2.4% | Aug 21, 2019 | A HTTP Traversal Attack in earlier versions than ProSyst mBS SDK 8.2.6 and Bosch IoT Gateway Software 9.0.2 allows remot... |
| CVE-2019-11601 | HIGH | 7.5 | 2.7% | Aug 21, 2019 | A directory traversal vulnerability in remote access to backup & restore in earlier versions than ProSyst mBS SDK 8.2.6 ... |
| CVE-2019-1936 | HIGH | 7.2 | 39.5% | Aug 21, 2019 | A vulnerability in the web-based management interface of Cisco Integrated Management Controller (IMC) Supervisor, Cisco ... |
| CVE-2019-1908 | HIGH | 7.5 | 2.0% | Aug 21, 2019 | A vulnerability in the Intelligent Platform Management Interface (IPMI) implementation of Cisco Integrated Management Co... |
| CVE-2019-1907 | HIGH | 8.8 | 1.4% | Aug 21, 2019 | A vulnerability in the web server of Cisco Integrated Management Controller (IMC) could allow an authenticated, remote a... |
Check if your code is affected by 2019 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now