2019 CVE Vulnerabilities

17,620 CVEs published in 2019.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2019-6570HIGH8.8A vulnerability has been identified in SINEMA Remote Connect Server (All versions < V2.0). Due to insufficient checking ...
CVE-2019-6568HIGH7.5The webserver of the affected devices contains a vulnerability that may lead to a denial of service condition. An attac...
CVE-2019-3883HIGH7.5In 389-ds-base up to version 1.4.1.2, requests are handled by workers threads. Each sockets will be waited by the worker...
CVE-2019-3709HIGH8.3IsilonSD Management Server 1.1.0 contains a cross-site scripting vulnerability while registering vCenter servers. A remo...
CVE-2019-3708HIGH8.3IsilonSD Management Server 1.1.0 contains a cross-site scripting vulnerability while uploading an OVA file. A remote att...
CVE-2019-3891HIGH7.8It was discovered that a world-readable log file belonging to Candlepin component of Red Hat Satellite 6.4 leaked the cr...
CVE-2019-11229HIGH8.8models/repo_mirror.go in Gitea before 1.7.6 and 1.8.x before 1.8-RC3 mishandles mirror repo URL settings, leading to rem...
CVE-2019-11222HIGH7.8gf_bin128_parse in utils/os_divers.c in GPAC 0.7.1 has a buffer overflow issue for the crypt feature when encountering a...
CVE-2019-6534HIGH7.8The uncontrolled search path element vulnerability in Gemalto Sentinel UltraPro Client Library ux32w.dll Versions 1.3.0,...
CVE-2019-6525HIGH8.8AVEVA Wonderware System Platform 2017 Update 2 and prior uses an ArchestrA network user account for authentication of sy...
CVE-2019-9628HIGH7.5The XMLTooling library all versions prior to V3.0.4, provided with the OpenSAML and Shibboleth Service Provider software...
CVE-2019-5024HIGH7.6A restricted environment escape vulnerability exists in the “kiosk mode” function of Capsule Technologies SmartLinx Neur...
CVE-2019-3845HIGH8A lack of access control was found in the message queues maintained by Satellite's QPID broker and used by katello-agent...
CVE-2019-11077HIGH8.8FastAdmin V1.0.0.20190111_beta has a CSRF vulnerability to add a new admin user via the admin/auth/admin/add?dialog=1 UR...
CVE-2019-3943HIGH8.1MikroTik RouterOS versions Stable 6.43.12 and below, Long-term 6.42.12 and below, and Testing 6.44beta75 and below are v...
CVE-2019-1003049HIGH8.1Users who cached their CLI authentication before Jenkins was updated to 2.150.2 and newer, or 2.160 and newer, would rem...
CVE-2019-0044HIGH7.5Receipt of a specific packet on the out-of-band management interface fxp0 may cause the system to crash and restart (vmc...
CVE-2019-0043HIGH7.5In MPLS environments, receipt of a specific SNMP packet may cause the routing protocol daemon (RPD) process to crash and...
CVE-2019-0041HIGH8.6On EX4300-MP Series devices with any lo0 filters applied, transit network traffic may reach the control plane via loopba...
CVE-2019-0039HIGH8.1If REST API is enabled, the Junos OS login credentials are vulnerable to brute force attacks. The high default connectio...
CVE-2019-0037HIGH7.5In a Dynamic Host Configuration Protocol version 6 (DHCPv6) environment, the jdhcpd daemon may crash and restart upon re...
CVE-2019-0033HIGH7.5A firewall bypass vulnerability in the proxy ARP service of Juniper Networks Junos OS allows an attacker to cause a high...
CVE-2019-0032HIGH7.8A password management issue exists where the Organization authentication username and password were stored in plaintext ...
CVE-2019-0031HIGH7.5Specific IPv6 DHCP packets received by the jdhcpd daemon will cause a memory resource consumption issue to occur on a Ju...
CVE-2019-0028HIGH7.5On Junos devices with the BGP graceful restart helper mode enabled or the BGP graceful restart mechanism enabled, a BGP ...

Check if your code is affected by 2019 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now