2019 CVE Vulnerabilities
17,620 CVEs published in 2019.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2019-12806 | HIGH | 8.8 | 4.1% | Aug 13, 2019 | UniSign 2.0.4.0 and earlier version contains a stack-based buffer overflow vulnerability which can overwrite the stack w... |
| CVE-2019-10943 | HIGH | 7.5 | 1.0% | Aug 13, 2019 | A vulnerability has been identified in SIMATIC Drive Controller family (All versions), SIMATIC ET 200SP Open Controller ... |
| CVE-2019-10942 | HIGH | 8.6 | 1.4% | Aug 13, 2019 | A vulnerability has been identified in SCALANCE X-200 switch family (incl. SIPLUS NET variants) (All versions < V5.2.5),... |
| CVE-2019-14530 | HIGH | 8.8 | 66.9% | Aug 13, 2019 | An issue was discovered in custom/ajax_download.php in OpenEMR before 5.0.2 via the fileName parameter. An attacker can ... |
| CVE-2019-13418 | HIGH | 7.5 | 0.9% | Aug 12, 2019 | Search Guard versions before 24.0 had an issue that values of string arrays in documents are not properly anonymized. |
| CVE-2019-14934 | HIGH | 7.8 | 1.1% | Aug 11, 2019 | An issue was discovered in PDFResurrect before 0.18. pdf_load_pages_kids in pdf.c doesn't validate a certain size value,... |
| CVE-2019-12258 | HIGH | 7.5 | 23.4% | Aug 9, 2019 | Wind River VxWorks 6.6 through vx7 has Session Fixation in the TCP component. This is a IPNET security vulnerability: Do... |
| CVE-2019-11042 | HIGH | 7.1 | 4.4% | Aug 9, 2019 | When PHP EXIF extension is parsing EXIF information from an image, e.g. via exif_read_data() function, in PHP versions 7... |
| CVE-2019-11041 | HIGH | 7.1 | 4.4% | Aug 9, 2019 | When PHP EXIF extension is parsing EXIF information from an image, e.g. via exif_read_data() function, in PHP versions 7... |
| CVE-2019-3744 | HIGH | 7.8 | 0.4% | Aug 9, 2019 | Dell/Alienware Digital Delivery versions prior to 4.0.41 contain a privilege escalation vulnerability. A local non-privi... |
| CVE-2019-3742 | HIGH | 7.8 | 0.4% | Aug 9, 2019 | Dell/Alienware Digital Delivery versions prior to 3.5.2013 contain a privilege escalation vulnerability. A local non-pri... |
| CVE-2019-12263 | HIGH | 8.1 | 3.2% | Aug 9, 2019 | Wind River VxWorks 6.9.4 and vx7 has a Buffer Overflow in the TCP component (issue 4 of 4). There is an IPNET security v... |
| CVE-2019-12259 | HIGH | 7.5 | 15.9% | Aug 9, 2019 | Wind River VxWorks 6.6, 6.7, 6.8, 6.9 and vx7 has an array index error in the IGMPv3 client component. There is an IPNET... |
| CVE-2019-12257 | HIGH | 8.8 | 84.2% | Aug 9, 2019 | Wind River VxWorks 6.6 through 6.9 has a Buffer Overflow in the DHCP client component. There is an IPNET security vulner... |
| CVE-2019-12805 | HIGH | 8.8 | 2.9% | Aug 9, 2019 | NCSOFT Game Launcher, NC Launcher2 2.4.1.691 and earlier versions have a vulnerability in the custom protocol handler th... |
| CVE-2019-14806 | HIGH | 7.5 | 2.3% | Aug 9, 2019 | Pallets Werkzeug before 0.15.3, when used with Docker, has insufficient debugger PIN randomness because Docker container... |
| CVE-2019-14693 | HIGH | 8.5 | 4.2% | Aug 8, 2019 | Zoho ManageEngine AssetExplorer 6.2.0 is vulnerable to an XML External Entity Injection (XXE) attack when processing lic... |
| CVE-2019-1970 | HIGH | 7.5 | 1.5% | Aug 8, 2019 | A vulnerability in the Secure Sockets Layer (SSL)/Transport Layer Security (TLS) protocol inspection engine of Cisco Fir... |
| CVE-2019-1958 | HIGH | 8.8 | 0.6% | Aug 8, 2019 | A vulnerability in the web-based management interface of Cisco HyperFlex Software could allow an unauthenticated, remote... |
| CVE-2019-1957 | HIGH | 7.5 | 2.0% | Aug 8, 2019 | A vulnerability in the web interface of Cisco IoT Field Network Director could allow an unauthenticated, remote attacker... |
| CVE-2019-1955 | HIGH | 7.5 | 1.4% | Aug 8, 2019 | A vulnerability in the Sender Policy Framework (SPF) functionality of Cisco AsyncOS Software for Cisco Email Security Ap... |
| CVE-2019-1944 | HIGH | 7.3 | 0.3% | Aug 7, 2019 | Multiple vulnerabilities in the smart tunnel functionality of Cisco Adaptive Security Appliance (ASA) could allow an aut... |
| CVE-2019-1934 | HIGH | 8.8 | 1.6% | Aug 7, 2019 | A vulnerability in the web-based management interface of Cisco Adaptive Security Appliance (ASA) Software could allow an... |
| CVE-2019-1929 | HIGH | 7.8 | 1.5% | Aug 7, 2019 | Multiple vulnerabilities in Cisco Webex Network Recording Player for Microsoft Windows and Cisco Webex Player for Micros... |
| CVE-2019-1928 | HIGH | 7.8 | 1.5% | Aug 7, 2019 | Multiple vulnerabilities in Cisco Webex Network Recording Player for Microsoft Windows and Cisco Webex Player for Micros... |
Check if your code is affected by 2019 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now