2019 CVE Vulnerabilities
17,620 CVEs published in 2019.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2019-12962 | MEDIUM | 6.1 | 9.1% | Jun 25, 2019 | LiveZilla Server before 8.0.1.1 is vulnerable to XSS in mobile/index.php via the Accept-Language HTTP header. |
| CVE-2019-7231 | MEDIUM | 5.7 | 6.8% | Jun 24, 2019 | The ABB IDAL FTP server is vulnerable to a buffer overflow when a long string is sent by an authenticated attacker. This... |
| CVE-2019-10271 | MEDIUM | 4.3 | 0.9% | Jun 24, 2019 | An issue was discovered in the Ultimate Member plugin 2.39 for WordPress. It allows unauthorized profile and cover pictu... |
| CVE-2019-12384 | MEDIUM | 5.9 | 45.2% | Jun 24, 2019 | FasterXML jackson-databind 2.x before 2.9.9.1 might allow attackers to have a variety of impacts by leveraging failure t... |
| CVE-2019-8458 | MEDIUM | 4.4 | 1.0% | Jun 20, 2019 | Check Point Endpoint Security Client for Windows, with Anti-Malware blade installed, before version E81.00, tries to loa... |
| CVE-2019-12905 | MEDIUM | 6.1 | 3.6% | Jun 20, 2019 | FileRun 2019.05.21 allows XSS via the filename to the ?module=fileman§ion=do&page=up URI. This issue has been fixed ... |
| CVE-2019-1906 | MEDIUM | 6.5 | 1.3% | Jun 20, 2019 | A vulnerability in the Virtual Domain system of Cisco Prime Infrastructure (PI) could allow an authenticated, remote att... |
| CVE-2019-1905 | MEDIUM | 5.8 | 1.4% | Jun 20, 2019 | A vulnerability in the GZIP decompression engine of Cisco AsyncOS Software for Cisco Email Security Appliance (ESA) coul... |
| CVE-2019-1903 | MEDIUM | 6.5 | 2.2% | Jun 20, 2019 | A vulnerability in Cisco Security Manager could allow an unauthenticated, remote attacker to access sensitive informatio... |
| CVE-2019-1899 | MEDIUM | 5.3 | 3.4% | Jun 20, 2019 | A vulnerability in the web interface of Cisco RV110W, RV130W, and RV215W Routers could allow an unauthenticated, remote ... |
| CVE-2019-1898 | MEDIUM | 5.3 | 41.0% | Jun 20, 2019 | A vulnerability in the web-based management interface of Cisco RV110W, RV130W, and RV215W Routers could allow an unauthe... |
| CVE-2019-1897 | MEDIUM | 5.3 | 4.5% | Jun 20, 2019 | A vulnerability in the web-based management interface of Cisco RV110W, RV130W, and RV215W Routers could allow an unauthe... |
| CVE-2019-1879 | MEDIUM | 6.4 | 0.4% | Jun 20, 2019 | A vulnerability in the CLI of Cisco Integrated Management Controller (IMC) could allow an authenticated, local attacker ... |
| CVE-2019-1876 | MEDIUM | 4 | 1.8% | Jun 20, 2019 | A vulnerability in the HTTPS proxy feature of Cisco Wide Area Application Services (WAAS) Software could allow an unauth... |
| CVE-2019-1875 | MEDIUM | 4.8 | 0.9% | Jun 20, 2019 | A vulnerability in the web-based management interface of Cisco Prime Service Catalog could allow an authenticated, remot... |
| CVE-2019-1632 | MEDIUM | 4.6 | 0.5% | Jun 20, 2019 | A vulnerability in the web-based management interface of Cisco Integrated Management Controller (IMC) could allow an aut... |
| CVE-2019-1631 | MEDIUM | 5.3 | 2.2% | Jun 20, 2019 | A vulnerability in the web-based management interface of Cisco Integrated Management Controller (IMC) could allow an una... |
| CVE-2019-1630 | MEDIUM | 5.5 | 0.3% | Jun 20, 2019 | A vulnerability in the firmware signature checking program of Cisco Integrated Management Controller (IMC) could allow a... |
| CVE-2019-1629 | MEDIUM | 5.3 | 1.5% | Jun 20, 2019 | A vulnerability in the configuration import utility of Cisco Integrated Management Controller (IMC) could allow an unaut... |
| CVE-2019-1628 | MEDIUM | 5.5 | 0.4% | Jun 20, 2019 | A vulnerability in the web server of Cisco Integrated Management Controller (IMC) could allow an authenticated, local at... |
| CVE-2019-1627 | MEDIUM | 6.5 | 1.2% | Jun 20, 2019 | A vulnerability in the Server Utilities of Cisco Integrated Management Controller (IMC) could allow an authenticated, re... |
| CVE-2019-1623 | MEDIUM | 6.7 | 0.5% | Jun 20, 2019 | A vulnerability in the CLI configuration shell of Cisco Meeting Server could allow an authenticated, local attacker to i... |
| CVE-2019-12904 | MEDIUM | 5.9 | 2.1% | Jun 20, 2019 | In Libgcrypt 1.8.4, the C implementation of AES is vulnerable to a flush-and-reload side-channel attack because physical... |
| CVE-2019-11649 | MEDIUM | 5.4 | 0.6% | Jun 19, 2019 | Cross-Site Scripting vulnerability in Micro Focus Fortify Software Security Center Server, versions 17.2, 18.1, 18.2, ha... |
| CVE-2019-4385 | MEDIUM | 6.5 | 0.3% | Jun 19, 2019 | IBM Spectrum Protect Plus 10.1.2 may display the vSnap CIFS password in the IBM Spectrum Protect Plus Joblog. This can r... |
Check if your code is affected by 2019 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now