2019 CVE Vulnerabilities
17,620 CVEs published in 2019.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2019-1911 | MEDIUM | 5.3 | 0.3% | Jul 6, 2019 | A vulnerability in the CLI of Cisco Unified Communications Domain Manager (Cisco Unified CDM) Software could allow an au... |
| CVE-2019-1909 | MEDIUM | 6.8 | 1.5% | Jul 6, 2019 | A vulnerability in the implementation of Border Gateway Protocol (BGP) functionality in Cisco IOS XR Software could allo... |
| CVE-2019-5972 | MEDIUM | 6.1 | 1.6% | Jul 5, 2019 | Cross-site scripting vulnerability in Online Lesson Booking 0.8.6 and earlier allows remote attackers to inject arbitrar... |
| CVE-2019-5970 | MEDIUM | 6.1 | 1.6% | Jul 5, 2019 | Cross-site scripting vulnerability in Attendance Manager 0.5.6 and earlier allows remote attackers to inject arbitrary w... |
| CVE-2019-5962 | MEDIUM | 6.1 | 1.6% | Jul 5, 2019 | Cross-site scripting vulnerability in Zoho SalesIQ 1.0.8 and earlier allows remote attackers to inject arbitrary web scr... |
| CVE-2019-13311 | MEDIUM | 6.5 | 2.8% | Jul 5, 2019 | ImageMagick 7.0.8-50 Q16 has memory leaks at AcquireMagickMemory because of a wand/mogrify.c error. |
| CVE-2019-13310 | MEDIUM | 6.5 | 2.2% | Jul 5, 2019 | ImageMagick 7.0.8-50 Q16 has memory leaks at AcquireMagickMemory because of an error in MagickWand/mogrify.c. |
| CVE-2019-13309 | MEDIUM | 6.5 | 2.7% | Jul 5, 2019 | ImageMagick 7.0.8-50 Q16 has memory leaks at AcquireMagickMemory because of mishandling the NoSuchImage error in CLIList... |
| CVE-2019-13301 | MEDIUM | 6.5 | 2.7% | Jul 5, 2019 | ImageMagick 7.0.8-50 Q16 has memory leaks in AcquireMagickMemory because of an AnnotateImage error. |
| CVE-2019-13296 | MEDIUM | 6.5 | 2.1% | Jul 5, 2019 | ImageMagick 7.0.8-50 Q16 has direct memory leaks in AcquireMagickMemory because of an error in CLIListOperatorImages in ... |
| CVE-2019-13286 | MEDIUM | 5.5 | 1.1% | Jul 4, 2019 | In Xpdf 4.01.01, there is a heap-based buffer over-read in the function JBIG2Stream::readTextRegionSeg() located at JBIG... |
| CVE-2019-1890 | MEDIUM | 6.5 | 0.6% | Jul 4, 2019 | A vulnerability in the fabric infrastructure VLAN connection establishment of the Cisco Nexus 9000 Series Application Ce... |
| CVE-2019-6641 | MEDIUM | 6.5 | 2.0% | Jul 3, 2019 | On BIG-IP 12.1.0-12.1.4.1, undisclosed requests can cause iControl REST processes to crash. The attack can only come fro... |
| CVE-2019-6640 | MEDIUM | 5.3 | 1.1% | Jul 3, 2019 | On BIG-IP 14.1.0-14.1.0.5, 14.0.0-14.0.0.4, 13.0.0-13.1.1.4, 12.1.0-12.1.4, 11.6.1-11.6.3.4, and 11.5.1-11.5.8, SNMP exp... |
| CVE-2019-6639 | MEDIUM | 4.8 | 0.7% | Jul 3, 2019 | On BIG-IP (AFM, PEM) 14.1.0-14.1.0.5, 14.0.0-14.0.0.4, 13.0.0-13.1.1.4, 12.1.0-12.1.4, 11.6.1-11.6.3.4, and 11.5.1-11.5.... |
| CVE-2019-6638 | MEDIUM | 6.5 | 2.0% | Jul 3, 2019 | On BIG-IP 14.1.0-14.1.0.5 and 14.0.0-14.0.0.4, Malformed http requests made to an undisclosed iControl REST endpoint can... |
| CVE-2019-6635 | MEDIUM | 4.4 | 0.4% | Jul 3, 2019 | On BIG-IP 14.1.0-14.1.0.5, 14.0.0-14.0.0.4, 13.0.0-13.1.1.4, 12.1.0-12.1.4, 11.6.1-11.6.3.4, and 11.5.1-11.5.8, when the... |
| CVE-2019-6633 | MEDIUM | 4.4 | 0.3% | Jul 3, 2019 | On BIG-IP 14.1.0-14.1.0.5, 14.0.0-14.0.0.4, 13.0.0-13.1.1.4, 12.1.0-12.1.4.1, and 11.5.1-11.6.4, when the BIG-IP system ... |
| CVE-2019-5630 | MEDIUM | 5.9 | 0.9% | Jul 3, 2019 | A Cross-Site Request Forgery (CSRF) vulnerability was found in Rapid7 Nexpose InsightVM Security Console versions 6.5.0 ... |
| CVE-2019-3619 | MEDIUM | 6.8 | 1.1% | Jul 3, 2019 | Information Disclosure vulnerability in the Agent Handler in McAfee ePolicy Orchestrator (ePO) 5.9.x and 5.10.0 prior to... |
| CVE-2019-10136 | MEDIUM | 4.3 | 0.6% | Jul 2, 2019 | It was found that Spacewalk, all versions through 2.9, did not safely compute client token checksums. An attacker with a... |
| CVE-2019-7255 | MEDIUM | 6.1 | 55.8% | Jul 2, 2019 | Linear eMerge E3-Series devices allow XSS. |
| CVE-2019-4260 | MEDIUM | 5.3 | 1.3% | Jul 2, 2019 | IBM Daeja ViewONE Professional, Standard & Virtual 5.0 through 5.0.5 could allow an unauthorized user to download server... |
| CVE-2019-4134 | MEDIUM | 6.1 | 0.9% | Jul 2, 2019 | IBM Planning Analytics 2.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary Jav... |
| CVE-2019-4129 | MEDIUM | 5.3 | 1.6% | Jul 2, 2019 | IBM Spectrum Protect Operations Center 7.1 and 8.1 could allow a remote attacker to obtain sensitive information, caused... |
Check if your code is affected by 2019 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now