2019 CVE Vulnerabilities
17,619 CVEs published in 2019.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2019-11556 | MEDIUM | 6.1 | 1.0% | Sep 25, 2020 | Pagure before 5.6 allows XSS via the templates/blame.html blame view. |
| CVE-2019-1983 | MEDIUM | 5.3 | 1.9% | Sep 23, 2020 | A vulnerability in the email message filtering feature of Cisco AsyncOS Software for Cisco Email Security Appliance (ESA... |
| CVE-2019-1736 | MEDIUM | 6.6 | 0.2% | Sep 23, 2020 | A vulnerability in the firmware of the Cisco UCS C-Series Rack Servers could allow an authenticated, physical attacker t... |
| CVE-2019-16025 | MEDIUM | 4.8 | 0.6% | Sep 23, 2020 | A vulnerability in the web framework of Cisco Emergency Responder could allow an authenticated, remote attacker to condu... |
| CVE-2019-16017 | MEDIUM | 6.8 | 0.9% | Sep 23, 2020 | A vulnerability in the Operations, Administration, Maintenance and Provisioning (OAMP) OpsConsole Server for Cisco Unifi... |
| CVE-2019-16004 | MEDIUM | 6.5 | 1.0% | Sep 23, 2020 | A vulnerability in the REST API endpoint of Cisco Vision Dynamic Signage Director could allow an unauthenticated, remote... |
| CVE-2019-16000 | MEDIUM | 4.4 | 0.2% | Sep 23, 2020 | A vulnerability in the automatic update process of Cisco Umbrella Roaming Client for Windows could allow an authenticate... |
| CVE-2019-15993 | MEDIUM | 5.3 | 10.3% | Sep 23, 2020 | A vulnerability in the web UI of Cisco Small Business Switches could allow an unauthenticated, remote attacker to access... |
| CVE-2019-15974 | MEDIUM | 6.1 | 0.8% | Sep 23, 2020 | A vulnerability in the web interface of Cisco Managed Services Accelerator (MSX) could allow an unauthenticated, remote ... |
| CVE-2019-15969 | MEDIUM | 6.1 | 0.8% | Sep 23, 2020 | A vulnerability in the web-based management interface of Cisco Web Security Appliance (WSA) could allow an unauthenticat... |
| CVE-2019-15963 | MEDIUM | 6.5 | 0.9% | Sep 23, 2020 | A vulnerability in the web-based management interface of Cisco Unified Communications Manager could allow an authenticat... |
| CVE-2019-15959 | MEDIUM | 6.6 | 0.4% | Sep 23, 2020 | A vulnerability in Cisco Small Business SPA500 Series IP Phones could allow a physically proximate attacker to execute a... |
| CVE-2019-20919 | MEDIUM | 4.7 | 0.5% | Sep 17, 2020 | An issue was discovered in the DBI module before 1.643 for Perl. The hv_fetch() documentation requires checking for NULL... |
| CVE-2019-4671 | MEDIUM | 6.3 | 0.8% | Sep 15, 2020 | IBM Maximo Asset Management 7.6.0 and 7.6.1 is vulnerable to SQL injection. A remote attacker could send specially-craft... |
| CVE-2019-14761 | MEDIUM | 4.4 | 0.4% | Sep 14, 2020 | An issue was discovered in KaiOS 2.5. The pre-installed Note application is vulnerable to HTML and JavaScript injection ... |
| CVE-2019-14760 | MEDIUM | 4.4 | 0.4% | Sep 14, 2020 | An issue was discovered in KaiOS 2.5. The pre-installed Recorder application is vulnerable to HTML and JavaScript inject... |
| CVE-2019-14759 | MEDIUM | 4.4 | 0.4% | Sep 14, 2020 | An issue was discovered in KaiOS 1.0, 2.5, and 2.5.1. The pre-installed Radio application is vulnerable to HTML and Java... |
| CVE-2019-14758 | MEDIUM | 6.1 | 0.8% | Sep 14, 2020 | An issue was discovered in KaiOS 2.5 and 2.5.1. The pre-installed File Manager application is vulnerable to HTML and Jav... |
| CVE-2019-14757 | MEDIUM | 6.1 | 0.8% | Sep 14, 2020 | An issue was discovered in KaiOS 2.5 and 2.5.1. The pre-installed Contacts application is vulnerable to HTML and JavaScr... |
| CVE-2019-14756 | MEDIUM | 6.1 | 0.8% | Sep 14, 2020 | An issue was discovered in KaiOS 1.0, 2.5, and 2.5.12.5. The pre-installed Email application is vulnerable to HTML and J... |
| CVE-2019-20918 | MEDIUM | 6.5 | 1.5% | Sep 11, 2020 | An issue was discovered in InspIRCd 3 before 3.1.0. The silence module contains a use after free vulnerability. This vul... |
| CVE-2019-20917 | MEDIUM | 6.5 | 2.8% | Sep 11, 2020 | An issue was discovered in InspIRCd 2 before 2.0.28 and 3 before 3.3.0. The mysql module contains a NULL pointer derefer... |
| CVE-2019-14115 | MEDIUM | 5.5 | 0.2% | Sep 8, 2020 | u'Information disclosure issue occurs as in current logic as secure touch is released without clearing the display sessi... |
| CVE-2019-14025 | MEDIUM | 5.5 | 0.2% | Sep 8, 2020 | u'When a new session is created, Object is returned that contains TZ addresses and it get passed to HLOS as an handle to... |
| CVE-2019-11928 | MEDIUM | 6.1 | 1.0% | Sep 3, 2020 | An input validation issue in WhatsApp Desktop versions prior to v0.3.4932 could have allowed cross-site scripting upon c... |
Check if your code is affected by 2019 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now