2019 CVE Vulnerabilities
17,619 CVEs published in 2019.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2019-16958 | MEDIUM | 5.4 | 1.2% | Dec 1, 2020 | Cross-site Scripting (XSS) vulnerability in SolarWinds Web Help Desk 12.7.0 allows attacker to inject arbitrary web scri... |
| CVE-2019-20934 | MEDIUM | 5.3 | 0.3% | Nov 28, 2020 | An issue was discovered in the Linux kernel before 5.2.6. On NUMA systems, the Linux fair scheduler has a use-after-free... |
| CVE-2019-19877 | MEDIUM | 5.3 | 1.3% | Nov 27, 2020 | An issue was discovered in B&R Industrial Automation APROL before R4.2 V7.08. An attacker can get access to sensitive in... |
| CVE-2019-14587 | MEDIUM | 6.5 | 0.6% | Nov 23, 2020 | Logic issue EDK II may allow an unauthenticated user to potentially enable denial of service via adjacent access. |
| CVE-2019-2393 | MEDIUM | 6.5 | 1.2% | Nov 23, 2020 | A user authorized to perform database queries may trigger denial of service by issuing specially crafted queries, which ... |
| CVE-2019-2392 | MEDIUM | 6.5 | 1.2% | Nov 23, 2020 | A user authorized to perform database queries may trigger denial of service by issuing specially crafted queries, which ... |
| CVE-2019-20924 | MEDIUM | 6.5 | 1.3% | Nov 23, 2020 | A user authorized to perform database queries may trigger denial of service by issuing specially crafted queries which t... |
| CVE-2019-20923 | MEDIUM | 6.5 | 1.3% | Nov 23, 2020 | A user authorized to perform database queries may trigger denial of service by issuing specially crafted queries, which ... |
| CVE-2019-14562 | MEDIUM | 5.5 | 0.3% | Nov 23, 2020 | Integer overflow in DxeImageVerificationHandler() EDK II may allow an authenticated user to potentially enable denial of... |
| CVE-2019-14553 | MEDIUM | 4.9 | 1.4% | Nov 23, 2020 | Improper authentication in EDK II may allow a privileged user to potentially enable information disclosure via network a... |
| CVE-2019-19562 | MEDIUM | 4.6 | 0.5% | Nov 16, 2020 | An authentication bypass in the debug interface in Mercedes-Benz HERMES 2.1 allows an attacker with physical access to d... |
| CVE-2019-19560 | MEDIUM | 4.6 | 0.5% | Nov 16, 2020 | An authentication bypass in the debug interface in Mercedes-Benz HERMES 1.5 allows an attacker with physical access to d... |
| CVE-2019-19556 | MEDIUM | 4.6 | 0.5% | Nov 16, 2020 | An authentication bypass in the debug interface in Mercedes-Benz HERMES 1 allows an attacker with physical access to dev... |
| CVE-2019-7356 | MEDIUM | 5.4 | 0.7% | Nov 4, 2020 | Subrion CMS v4.2.1 allows XSS via the panel/phrases/ VALUE parameter. |
| CVE-2019-4563 | MEDIUM | 5.3 | 0.9% | Oct 29, 2020 | IBM Security Directory Server 6.4.0 does not set the secure attribute on authorization tokens or session cookies. Attack... |
| CVE-2019-4547 | MEDIUM | 5.3 | 1.1% | Oct 29, 2020 | IBM Security Directory Server 6.4.0 generates an error message that includes sensitive information about its environment... |
| CVE-2019-8901 | MEDIUM | 6.5 | 0.5% | Oct 27, 2020 | This issue was addressed by verifying host keys when connecting to a previously-known SSH server. This issue is fixed in... |
| CVE-2019-8898 | MEDIUM | 4.3 | 0.8% | Oct 27, 2020 | An information disclosure issue existed in the handling of the Storage Access API. This issue was addressed with improve... |
| CVE-2019-8858 | MEDIUM | 5.3 | 0.7% | Oct 27, 2020 | A logic issue was addressed with improved state management. This issue is fixed in macOS Catalina 10.15.1, Security Upda... |
| CVE-2019-8855 | MEDIUM | 6.3 | 0.8% | Oct 27, 2020 | An access issue was addressed with additional sandbox restrictions. This issue is fixed in macOS Catalina 10.15. A malic... |
| CVE-2019-8853 | MEDIUM | 5.5 | 0.8% | Oct 27, 2020 | A validation issue was addressed with improved input sanitization. This issue is fixed in macOS Catalina 10.15.4, Securi... |
| CVE-2019-8850 | MEDIUM | 5.5 | 0.8% | Oct 27, 2020 | An out-of-bounds read was addressed with improved input validation. This issue is fixed in macOS Catalina 10.15, iOS 13.... |
| CVE-2019-8796 | MEDIUM | 5.3 | 1.0% | Oct 27, 2020 | A logic issue was addressed with improved validation. This issue is fixed in macOS Catalina 10.15.1, Security Update 201... |
| CVE-2019-8664 | MEDIUM | 6.5 | 0.8% | Oct 27, 2020 | An input validation issue was addressed with improved input validation. This issue is fixed in iOS 12.3, watchOS 5.2.1. ... |
| CVE-2019-8839 | MEDIUM | 5.5 | 0.7% | Oct 27, 2020 | A buffer overflow was addressed with improved bounds checking. This issue is fixed in macOS Catalina 10.15.2, Security U... |
Check if your code is affected by 2019 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now