2019 CVE Vulnerabilities

17,620 CVEs published in 2019.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2019-4162HIGH7.5IBM Security Information Queue (ISIQ) 1.0.0, 1.0.1, and 1.0.2 is missing the HTTP Strict Transport Security header. User...
CVE-2019-6452HIGH8.8Kyocera Command Center RX TASKalfa4501i and TASKalfa5052ci allows remote attackers to abuse the Test button in the machi...
CVE-2019-6451HIGH7.5On SOYAL AR-727H and AR-829Ev5 devices, all CGI programs allow unauthenticated POST access.
CVE-2019-3722HIGH7.5Dell EMC OpenManage Server Administrator (OMSA) versions prior to 9.1.0.3 and prior to 9.2.0.4 contain an XML external e...
CVE-2019-4185HIGH8.3IBM InfoSphere Information Server 11.7.1 containers are vulnerable to privilege escalation due to an insecurely configur...
CVE-2019-7672HIGH8.8Prima Systems FlexAir, Versions 2.3.38 and prior. The flash version of the web interface contains a hard-coded username ...
CVE-2019-12494HIGH8.5In Gardener before 0.20.0, incorrect access control in seed clusters allows information disclosure by sending HTTP GET r...
CVE-2019-1868HIGH7.5A vulnerability in the web-based management interface of Cisco Webex Meetings Server could allow an unauthenticated, rem...
CVE-2019-1861HIGH7.2A vulnerability in the software update feature of Cisco Industrial Network Director could allow an authenticated, remote...
CVE-2019-1845HIGH8.6A vulnerability in the authentication service of the Cisco Unified Communications Manager IM and Presence (Unified CM IM...
CVE-2019-9755HIGH7An integer underflow issue exists in ntfs-3g 2017.3.23. A local attacker could potentially exploit this by running /bin/...
CVE-2019-12728HIGH8.1Grails before 3.3.10 used cleartext HTTP to resolve the SDKMan notification service. NOTE: users' apps were not resolvin...
CVE-2019-12615HIGH7.5An issue was discovered in get_vdev_port_node_info in arch/sparc/kernel/mdesc.c in the Linux kernel through 5.1.6. There...
CVE-2019-12169HIGH8.8ATutor 2.2.4 allows Arbitrary File Upload and Directory Traversal, resulting in remote code execution via a ".." pathnam...
CVE-2019-11509HIGH8.8In Pulse Secure Pulse Connect Secure (PCS) before 8.1R15.1, 8.2 before 8.2R12.1, 8.3 before 8.3R7.1, and 9.0 before 9.0R...
CVE-2019-6769HIGH7.8This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Foxit Reader 9.4.1.1...
CVE-2019-6768HIGH7.8This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Foxit Reader 9.4.1.1...
CVE-2019-6767HIGH7.8This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Foxit Reader 9.4.1.1...
CVE-2019-6765HIGH7.8This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Foxit PhantomPDF 9.4...
CVE-2019-6764HIGH7.8This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Foxit Reader 9.4.1.1...
CVE-2019-6763HIGH7.8This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Foxit Reader 9.4.1.1...
CVE-2019-6762HIGH7.8This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Foxit PhantomPDF 9.4...
CVE-2019-6761HIGH7.8This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Foxit Reader 9.4.0.1...
CVE-2019-6760HIGH7.8This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Foxit Reader 9.4.168...
CVE-2019-6759HIGH7.8This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Foxit Reader 9.3.108...

Check if your code is affected by 2019 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now