2019 CVE Vulnerabilities
17,620 CVEs published in 2019.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2019-14783 | MEDIUM | 5.5 | 0.2% | Aug 8, 2019 | On Samsung mobile devices with N(7.x), and O(8.x), P(9.0) software, FotaAgent allows a malicious application to create p... |
| CVE-2019-14774 | MEDIUM | 6.1 | 1.0% | Aug 8, 2019 | The woo-variation-swatches (aka Variation Swatches for WooCommerce) plugin 1.0.61 for WordPress allows XSS via the wp-ad... |
| CVE-2019-14683 | MEDIUM | 5.7 | 0.7% | Aug 8, 2019 | The codection "Import users from CSV with meta" plugin before 1.14.2.2 for WordPress allows wp-admin/admin-ajax.php?acti... |
| CVE-2019-14680 | MEDIUM | 5.7 | 0.5% | Aug 8, 2019 | The admin-renamer-extended (aka Admin renamer extended) plugin 3.2.1 for WordPress allows wp-admin/plugins.php?page=admi... |
| CVE-2019-14335 | MEDIUM | 5.5 | 0.8% | Aug 8, 2019 | An issue was discovered on D-Link 6600-AP and DWL-3600AP Ax 4.2.0.14 21/03/2019 devices. There is post-authenticated den... |
| CVE-2019-1973 | MEDIUM | 4.8 | 0.8% | Aug 8, 2019 | A vulnerability in the web portal framework of Cisco Enterprise NFV Infrastructure Software (NFVIS) could allow an authe... |
| CVE-2019-1972 | MEDIUM | 6.7 | 0.5% | Aug 8, 2019 | A vulnerability the Cisco Enterprise NFV Infrastructure Software (NFVIS) restricted CLI could allow an authenticated, lo... |
| CVE-2019-1961 | MEDIUM | 4.9 | 1.9% | Aug 8, 2019 | A vulnerability in Cisco Enterprise NFV Infrastructure Software (NFVIS) could allow an authenticated, remote attacker to... |
| CVE-2019-1960 | MEDIUM | 4.4 | 0.4% | Aug 8, 2019 | Multiple vulnerabilities in Cisco Enterprise NFV Infrastructure Software (NFVIS) could allow an authenticated, local att... |
| CVE-2019-1959 | MEDIUM | 4.4 | 0.4% | Aug 8, 2019 | Multiple vulnerabilities in Cisco Enterprise NFV Infrastructure Software (NFVIS) could allow an authenticated, local att... |
| CVE-2019-1956 | MEDIUM | 4.8 | 0.8% | Aug 8, 2019 | A vulnerability in the web-based interface of the Cisco SPA112 2-Port Phone Adapter could allow an authenticated, remote... |
| CVE-2019-1954 | MEDIUM | 6.1 | 1.1% | Aug 8, 2019 | A vulnerability in the web-based management interface of Cisco Webex Meetings Server Software could allow an unauthentic... |
| CVE-2019-1953 | MEDIUM | 6.5 | 1.5% | Aug 8, 2019 | A vulnerability in the web portal of Cisco Enterprise NFV Infrastructure Software (NFVIS) could allow an authenticated, ... |
| CVE-2019-1952 | MEDIUM | 6.7 | 0.7% | Aug 8, 2019 | A vulnerability in the CLI of Cisco Enterprise NFV Infrastructure Software (NFVIS) could allow an authenticated, local a... |
| CVE-2019-1951 | MEDIUM | 5.8 | 1.5% | Aug 8, 2019 | A vulnerability in the packet filtering features of Cisco SD-WAN Solution could allow an unauthenticated, remote attacke... |
| CVE-2019-1949 | MEDIUM | 4.8 | 0.8% | Aug 8, 2019 | A vulnerability in the web-based management interface of Cisco Firepower Management Center could allow an authenticated,... |
| CVE-2019-1946 | MEDIUM | 6.5 | 1.4% | Aug 8, 2019 | A vulnerability in the web-based management interface of Cisco Enterprise NFV Infrastructure Software (NFVIS) could allo... |
| CVE-2019-1945 | MEDIUM | 6.7 | 0.3% | Aug 7, 2019 | Multiple vulnerabilities in the smart tunnel functionality of Cisco Adaptive Security Appliance (ASA) could allow an aut... |
| CVE-2019-14763 | MEDIUM | 5.5 | 0.3% | Aug 7, 2019 | In the Linux kernel before 4.16.4, a double-locking error in drivers/usb/dwc3/gadget.c may potentially cause a deadlock ... |
| CVE-2019-14750 | MEDIUM | 6.1 | 11.7% | Aug 7, 2019 | An issue was discovered in osTicket before 1.10.7 and 1.12.x before 1.12.1. Stored XSS exists in setup/install.php. It w... |
| CVE-2019-14748 | MEDIUM | 5.4 | 2.7% | Aug 7, 2019 | An issue was discovered in osTicket before 1.10.7 and 1.12.x before 1.12.1. The Ticket creation form allows users to upl... |
| CVE-2019-10389 | MEDIUM | 4.3 | 0.6% | Aug 7, 2019 | A missing permission check in Jenkins Relution Enterprise Appstore Publisher Plugin 1.24 and earlier allows attackers to... |
| CVE-2019-10388 | MEDIUM | 4.3 | 0.6% | Aug 7, 2019 | A cross-site request forgery vulnerability in Jenkins Relution Enterprise Appstore Publisher Plugin 1.24 and earlier all... |
| CVE-2019-10387 | MEDIUM | 6.5 | 0.9% | Aug 7, 2019 | A missing permission check in Jenkins XL TestView Plugin 1.2.0 and earlier in XLTestView.XLTestDescriptor#doTestConnecti... |
| CVE-2019-10385 | MEDIUM | 6.5 | 1.5% | Aug 7, 2019 | Jenkins eggPlant Plugin 2.2 and earlier stores credentials unencrypted in job config.xml files on the Jenkins master whe... |
Check if your code is affected by 2019 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now