2019 CVE Vulnerabilities
17,620 CVEs published in 2019.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2019-4142 | HIGH | 8.8 | 0.5% | Jun 18, 2019 | IBM Cloud Private 2.1.0, 3.1.0, 3.1.1, and 3.1.2 is vulnerable to cross-site request forgery which could allow an attack... |
| CVE-2019-8323 | HIGH | 7.5 | 3.4% | Jun 17, 2019 | An issue was discovered in RubyGems 2.6 and later through 3.0.2. Gem::GemcutterUtilities#with_response may output the AP... |
| CVE-2019-8322 | HIGH | 7.5 | 3.4% | Jun 17, 2019 | An issue was discovered in RubyGems 2.6 and later through 3.0.2. The gem owner command outputs the contents of the API r... |
| CVE-2019-8321 | HIGH | 7.5 | 3.4% | Jun 17, 2019 | An issue was discovered in RubyGems 2.6 and later through 3.0.2. Since Gem::UserInteraction#verbose calls say without es... |
| CVE-2019-8325 | HIGH | 7.5 | 3.4% | Jun 17, 2019 | An issue was discovered in RubyGems 2.6 and later through 3.0.2. Since Gem::CommandManager#run calls alert_error without... |
| CVE-2019-8324 | HIGH | 8.8 | 3.2% | Jun 17, 2019 | An issue was discovered in RubyGems 2.6 and later through 3.0.2. A crafted gem with a multi-line name is not handled cor... |
| CVE-2019-11409 | HIGH | 8.8 | 87.5% | Jun 17, 2019 | app/operator_panel/exec.php in the Operator Panel module in FusionPBX 4.4.3 suffers from a command injection vulnerabili... |
| CVE-2019-12181 | HIGH | 8.8 | 66.0% | Jun 17, 2019 | A privilege escalation vulnerability exists in SolarWinds Serv-U before 15.1.7 for Linux. |
| CVE-2019-4103 | HIGH | 8 | 1.5% | Jun 17, 2019 | IBM Tivoli Netcool/Impact 7.1.0 allows for remote execution of command by low privileged User. Remote code execution all... |
| CVE-2019-11770 | HIGH | 8.1 | 1.3% | Jun 14, 2019 | In Eclipse Buildship versions prior to 3.1.1, the build files indicate that this project is resolving dependencies over ... |
| CVE-2019-12802 | HIGH | 7.8 | 1.6% | Jun 13, 2019 | In radare2 through 3.5.1, the rcc_context function of libr/egg/egg_lang.c mishandles changing context. This allows remot... |
| CVE-2019-12799 | HIGH | 8.8 | 54.7% | Jun 13, 2019 | In createInstanceFromNamedArguments in Shopware through 5.6.x, a crafted web request can trigger a PHP object instantiat... |
| CVE-2019-11117 | HIGH | 7.8 | 0.4% | Jun 13, 2019 | Improper permissions in the installer for Intel(R) Omni-Path Fabric Manager GUI before version 10.9.2.1.1 may allow an a... |
| CVE-2019-0164 | HIGH | 7.3 | 0.3% | Jun 13, 2019 | Improper permissions in the installer for Intel(R) Turbo Boost Max Technology 3.0 driver version 1.0.0.1035 and before m... |
| CVE-2019-0130 | HIGH | 7.4 | 1.9% | Jun 13, 2019 | Reflected XSS in web interface for Intel(R) Accelerated Storage Manager in Intel(R) RSTe before version 5.5.0.2015 may a... |
| CVE-2019-0128 | HIGH | 7.8 | 0.5% | Jun 13, 2019 | Improper permissions in the installer for Intel(R) Chipset Device Software (INF Update Utility) before version 10.1.1.45... |
| CVE-2019-7845 | HIGH | 8.8 | 5.5% | Jun 12, 2019 | Adobe Flash Player versions 32.0.0.192 and earlier, 32.0.0.192 and earlier, and 32.0.0.192 and earlier have an use after... |
| CVE-2019-5442 | HIGH | 7.5 | 1.4% | Jun 12, 2019 | XML Entity Expansion (Billion Laughs Attack) on Pippo 1.12.0 results in Denial of Service.Entities are created recursive... |
| CVE-2019-6584 | HIGH | 8.8 | 1.3% | Jun 12, 2019 | A vulnerability has been identified in SIEMENS LOGO!8 (6ED1052-xyyxx-0BA8 FS:01 to FS:06 / Firmware version V1.80.xx and... |
| CVE-2019-6582 | HIGH | 7.1 | 1.1% | Jun 12, 2019 | A vulnerability has been identified in Siveillance VMS 2017 R2 (All versions < V11.2a), Siveillance VMS 2018 R1 (All ver... |
| CVE-2019-6581 | HIGH | 8.8 | 1.3% | Jun 12, 2019 | A vulnerability has been identified in Siveillance VMS 2017 R2 (All versions < V11.2a), Siveillance VMS 2018 R1 (All ver... |
| CVE-2019-6571 | HIGH | 7.5 | 1.6% | Jun 12, 2019 | A vulnerability has been identified in SIEMENS LOGO!8 (6ED1052-xyyxx-0BA8 FS:01 to FS:06 / Firmware version V1.80.xx and... |
| CVE-2019-10925 | HIGH | 7.1 | 2.3% | Jun 12, 2019 | A vulnerability has been identified in SIMATIC MV400 family (All Versions < V7.0.6). An authenticated attacker could esc... |
| CVE-2019-1080 | HIGH | 7.5 | 3.3% | Jun 12, 2019 | A remote code execution vulnerability exists in the way the scripting engine handles objects in memory in Microsoft brow... |
| CVE-2019-1069 | HIGH | 7.8 | 6.1% | Jun 12, 2019 | An elevation of privilege vulnerability exists in the way the Task Scheduler Service validates certain file operations. ... |
Check if your code is affected by 2019 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now