2019 CVE Vulnerabilities
17,620 CVEs published in 2019.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2019-4028 | MEDIUM | 5.4 | 1.0% | Mar 5, 2019 | IBM Sterling B2B Integrator 5.2.0.1 through 6.0.0.0 is vulnerable to cross-site scripting. This vulnerability allows use... |
| CVE-2019-4027 | MEDIUM | 5.4 | 1.0% | Mar 5, 2019 | IBM Sterling B2B Integrator 5.2.0.1 through 6.0.0.0 is vulnerable to cross-site scripting. This vulnerability allows use... |
| CVE-2019-8263 | MEDIUM | 6.5 | 2.5% | Mar 5, 2019 | UltraVNC revision 1205 has stack-based buffer overflow vulnerability in VNC client code inside ShowConnInfo routine, whi... |
| CVE-2019-9568 | MEDIUM | 6.5 | 1.6% | Mar 4, 2019 | The "Forminator Contact Form, Poll & Quiz Builder" plugin before 1.6 for WordPress has SQL Injection via the wp-admin/ad... |
| CVE-2019-9567 | MEDIUM | 6.1 | 1.3% | Mar 4, 2019 | The "Forminator Contact Form, Poll & Quiz Builder" plugin before 1.6 for WordPress has XSS via a custom input field of a... |
| CVE-2019-6547 | MEDIUM | 5.5 | 1.1% | Feb 28, 2019 | Delta Industrial Automation CNCSoft, CNCSoft ScreenEditor Version 1.00.84 and prior. An out-of-bounds read vulnerability... |
| CVE-2019-3598 | MEDIUM | 5.3 | 1.9% | Feb 28, 2019 | Buffer Access with Incorrect Length Value in McAfee Agent (MA) 5.x allows remote unauthenticated users to potentially ca... |
| CVE-2019-9209 | MEDIUM | 5.5 | 1.4% | Feb 28, 2019 | In Wireshark 2.4.0 to 2.4.12 and 2.6.0 to 2.6.6, the ASN.1 BER and related dissectors could crash. This was addressed in... |
| CVE-2019-1559 | MEDIUM | 5.9 | 17.1% | Feb 27, 2019 | If an application encounters a fatal protocol error and then calls SSL_shutdown() twice (once to send a close_notify, an... |
| CVE-2019-4061 | MEDIUM | 5.3 | 22.5% | Feb 27, 2019 | IBM BigFix Platform 9.2 and 9.5 could allow an attacker to query the relay remotely and gather information about the upd... |
| CVE-2019-7006 | MEDIUM | 5.5 | 0.3% | Feb 27, 2019 | Avaya one-X Communicator uses weak cryptographic algorithms in the client authentication component that could allow a lo... |
| CVE-2019-9076 | MEDIUM | 5.5 | 1.2% | Feb 24, 2019 | An issue was discovered in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.32. I... |
| CVE-2019-9074 | MEDIUM | 5.5 | 1.6% | Feb 24, 2019 | An issue was discovered in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.32. I... |
| CVE-2019-9073 | MEDIUM | 5.5 | 1.1% | Feb 24, 2019 | An issue was discovered in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.32. I... |
| CVE-2019-9072 | MEDIUM | 5.5 | 1.2% | Feb 24, 2019 | An issue was discovered in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.32. I... |
| CVE-2019-9071 | MEDIUM | 5.5 | 1.8% | Feb 24, 2019 | An issue was discovered in GNU libiberty, as distributed in GNU Binutils 2.32. It is a stack consumption issue in d_coun... |
| CVE-2019-1700 | MEDIUM | 6.1 | 0.5% | Feb 21, 2019 | A vulnerability in field-programmable gate array (FPGA) ingress buffer management for the Cisco Firepower 9000 Series wi... |
| CVE-2019-1698 | MEDIUM | 4.9 | 3.1% | Feb 21, 2019 | A vulnerability in the web-based user interface of Cisco Internet of Things Field Network Director (IoT-FND) Software co... |
| CVE-2019-1691 | MEDIUM | 5.8 | 2.3% | Feb 21, 2019 | A vulnerability in the detection engine of Cisco Firepower Threat Defense Software could allow an unauthenticated, remot... |
| CVE-2019-1685 | MEDIUM | 6.1 | 1.2% | Feb 21, 2019 | A vulnerability in the Security Assertion Markup Language (SAML) single sign-on (SSO) interface of Cisco Unity Connectio... |
| CVE-2019-1684 | MEDIUM | 6.5 | 0.6% | Feb 21, 2019 | A vulnerability in the Cisco Discovery Protocol or Link Layer Discovery Protocol (LLDP) implementation for the Cisco IP ... |
| CVE-2019-1666 | MEDIUM | 5.3 | 2.2% | Feb 21, 2019 | A vulnerability in the Graphite service of Cisco HyperFlex software could allow an unauthenticated, remote attacker to r... |
| CVE-2019-1665 | MEDIUM | 4.7 | 1.1% | Feb 21, 2019 | A vulnerability in the web-based management interface of Cisco HyperFlex software could allow an unauthenticated, remote... |
| CVE-2019-3474 | MEDIUM | 6.5 | 9.0% | Feb 20, 2019 | A path traversal vulnerability in the web application component of Micro Focus Filr 3.x allows a remote attacker authent... |
| CVE-2019-8331 | MEDIUM | 6.1 | 16.9% | Feb 20, 2019 | In Bootstrap before 3.4.1 and 4.3.x before 4.3.1, XSS is possible in the tooltip or popover data-template attribute. |
Check if your code is affected by 2019 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now