2019 CVE Vulnerabilities

17,620 CVEs published in 2019.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2019-4072MEDIUM6.3IBM Tivoli Storage Productivity Center (IBM Spectrum Control Standard Edition 5.2.1 through 5.2.17) allows users to rema...
CVE-2019-11323MEDIUM5.9HAProxy before 1.9.7 mishandles a reload with rotated keys, which triggers use of uninitialized, and very predictable, H...
CVE-2019-11820MEDIUM5.5Information exposure through process environment vulnerability in Synology Calendar before 2.3.3-0620 allows local users...
CVE-2019-5014MEDIUM6.5An exploitable improper access control vulnerability exists in the bluetooth low energy functionality of Winco Fireworks...
CVE-2019-11507MEDIUM6.1In Pulse Secure Pulse Connect Secure (PCS) 8.3.x before 8.3R7.1 and 9.0.x before 9.0R3, an XSS issue has been found on t...
CVE-2019-5431MEDIUM5.4This vulnerability was caused by an incomplete fix to CVE-2017-0911. Twitter Kit for iOS versions 3.0 to 3.4.0 is vulner...
CVE-2019-3799MEDIUM6.5Spring Cloud Config, versions 2.1.x prior to 2.1.2, versions 2.0.x prior to 2.0.4, and versions 1.4.x prior to 1.4.6, an...
CVE-2019-6617MEDIUM6.5On BIG-IP 14.0.0-14.1.0.1, 13.0.0-13.1.1.4, 12.1.0-12.1.4, 11.6.1-11.6.3.4, and 11.5.2-11.5.8, a user with the Resource ...
CVE-2019-6615MEDIUM4.9On BIG-IP 14.0.0-14.1.0.1, 13.0.0-13.1.1.4, 12.1.0-12.1.4, 11.6.1-11.6.3.4, and 11.5.2-11.5.8, Administrator and Resourc...
CVE-2019-6614MEDIUM6.5On BIG-IP 14.0.0-14.1.0.1, 13.0.0-13.1.1.4, and 12.1.0-12.1.4, internal methods used to prevent arbitrary file overwrite...
CVE-2019-3805MEDIUM4.7A flaw was discovered in wildfly versions up to 16.0.0.Final that would allow local users who are able to execute init.d...
CVE-2019-3400MEDIUM6.1The labels gadget in Jira before version 7.13.2, and from version 8.0.0 before version 8.0.2 allows remote attackers to ...
CVE-2019-11037MEDIUM4.9In PHP imagick extension in versions between 3.3.0 and 3.4.4, writing to an array of values in ImagickKernel::fromMatrix...
CVE-2019-6613MEDIUM5.3On BIG-IP 13.0.0-13.1.1.4, 12.1.0-12.1.4, 11.6.1-11.6.3.4, and 11.5.2-11.5.8, SNMP may expose sensitive configuration ob...
CVE-2019-1857MEDIUM6.1A vulnerability in the web-based management interface of Cisco HyperFlex HX-Series could allow an unauthenticated, remot...
CVE-2019-1856MEDIUM6.1A vulnerability in the web-based management interface of Cisco Prime Collaboration Assurance (PCA) could allow an unauth...
CVE-2019-1854MEDIUM4.1A vulnerability in the management web interface of Cisco Expressway Series could allow an authenticated, remote attacker...
CVE-2019-1852MEDIUM6.1A vulnerability in the web-based management interface of Cisco Prime Network Registrar could allow an unauthenticated, r...
CVE-2019-1844MEDIUM5.3A vulnerability in certain attachment detection mechanisms of the Cisco Email Security Appliance (ESA) could allow an un...
CVE-2019-1838MEDIUM5.4A vulnerability in the web-based management interface of Cisco Application Policy Infrastructure Controller (APIC) could...
CVE-2019-1803MEDIUM6.7A vulnerability in the filesystem management for the Cisco Nexus 9000 Series Application Centric Infrastructure (ACI) Mo...
CVE-2019-1705MEDIUM5.3A vulnerability in the remote access VPN session manager of Cisco Adaptive Security Appliance (ASA) Software could allow...
CVE-2019-1701MEDIUM4.8Multiple vulnerabilities in the WebVPN service of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower T...
CVE-2019-1699MEDIUM6.7A vulnerability in the CLI of Cisco Firepower Threat Defense (FTD) Software could allow an authenticated, local attacker...
CVE-2019-1695MEDIUM6.5A vulnerability in the detection engine of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat D...

Check if your code is affected by 2019 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now