2019 CVE Vulnerabilities
17,620 CVEs published in 2019.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2019-1595 | HIGH | 7.4 | 0.6% | Mar 6, 2019 | A vulnerability in the Fibre Channel over Ethernet (FCoE) protocol implementation in Cisco NX-OS Software could allow an... |
| CVE-2019-1594 | HIGH | 7.4 | 0.8% | Mar 6, 2019 | A vulnerability in the 802.1X implementation for Cisco NX-OS Software could allow an unauthenticated, adjacent attacker ... |
| CVE-2019-1593 | HIGH | 7.8 | 0.4% | Mar 6, 2019 | A vulnerability in the Bash shell implementation for Cisco NX-OS Software could allow an authenticated, local attacker t... |
| CVE-2019-1591 | HIGH | 7.8 | 0.5% | Mar 6, 2019 | A vulnerability in a specific CLI command implementation of Cisco Nexus 9000 Series ACI Mode Switch Software could allow... |
| CVE-2019-9581 | HIGH | 8.8 | 13.7% | Mar 6, 2019 | phpscheduleit Booked Scheduler 2.7.5 allows arbitrary file upload via the Favicon field, leading to execution of arbitra... |
| CVE-2019-0724 | HIGH | 8.1 | 23.8% | Mar 5, 2019 | An elevation of privilege vulnerability exists in Microsoft Exchange Server, aka 'Microsoft Exchange Server Elevation of... |
| CVE-2019-3921 | HIGH | 8.8 | 18.2% | Mar 5, 2019 | The Alcatel Lucent I-240W-Q GPON ONT using firmware version 3FE54567BOZJ19 is vulnerable to a stack buffer overflow via ... |
| CVE-2019-3920 | HIGH | 8.8 | 3.9% | Mar 5, 2019 | The Alcatel Lucent I-240W-Q GPON ONT using firmware version 3FE54567BOZJ19 is vulnerable to authenticated command inject... |
| CVE-2019-3919 | HIGH | 8.8 | 3.9% | Mar 5, 2019 | The Alcatel Lucent I-240W-Q GPON ONT using firmware version 3FE54567BOZJ19 is vulnerable to command injection via crafte... |
| CVE-2019-3917 | HIGH | 7.5 | 2.4% | Mar 5, 2019 | The Alcatel Lucent I-240W-Q GPON ONT using firmware version 3FE54567BOZJ19 allows a remote, unauthenticated attacker to ... |
| CVE-2019-6561 | HIGH | 8.8 | 1.2% | Mar 5, 2019 | Cross-site request forgery has been identified in Moxa IKS and EDS, which may allow for the execution of unauthorized ac... |
| CVE-2019-6528 | HIGH | 8.8 | 2.6% | Mar 5, 2019 | PSI GridConnect GmbH Telecontrol Gateway and Smart Telecontrol Unit family, IEC104 Security Proxy versions Telecontrol G... |
| CVE-2019-6520 | HIGH | 7.5 | 1.7% | Mar 5, 2019 | Moxa IKS and EDS does not properly check authority on server side, which results in a read-only user being able to perfo... |
| CVE-2019-6518 | HIGH | 7.5 | 1.2% | Mar 5, 2019 | Moxa IKS and EDS store plaintext passwords, which may allow sensitive information to be read by someone with access to t... |
| CVE-2019-6223 | HIGH | 7.5 | 2.6% | Mar 5, 2019 | A logic issue existed in the handling of Group FaceTime calls. The issue was addressed with improved state management. T... |
| CVE-2019-8259 | HIGH | 7.5 | 3.0% | Mar 5, 2019 | UltraVNC revision 1198 contains multiple memory leaks (CWE-655) in VNC client code, which allow an attacker to read stac... |
| CVE-2019-6551 | HIGH | 7.5 | 3.3% | Feb 28, 2019 | Pangea Communications Internet FAX ATA all Versions 3.1.8 and prior allow an attacker to bypass user authentication usin... |
| CVE-2019-6555 | HIGH | 7.8 | 1.7% | Feb 28, 2019 | Cscape, 9.80 SP4 and prior. An improper input validation vulnerability may be exploited by processing specially crafted ... |
| CVE-2019-1674 | HIGH | 7.8 | 10.8% | Feb 28, 2019 | A vulnerability in the update service of Cisco Webex Meetings Desktop App and Cisco Webex Productivity Tools for Windows... |
| CVE-2019-1999 | HIGH | 7.8 | 0.8% | Feb 28, 2019 | In binder_alloc_free_page of binder_alloc.c, there is a possible double free due to improper locking. This could lead to... |
| CVE-2019-3599 | HIGH | 7.5 | 1.8% | Feb 28, 2019 | Information Disclosure vulnerability in Remote logging (which is disabled by default) in McAfee Agent (MA) 5.x allows re... |
| CVE-2019-3582 | HIGH | 8.6 | 0.4% | Feb 28, 2019 | Privilege Escalation vulnerability in Microsoft Windows client in McAfee Endpoint Security (ENS) 10.6.1 and earlier allo... |
| CVE-2019-9210 | HIGH | 7.8 | 1.4% | Feb 27, 2019 | In AdvanceCOMP 2.1, png_compress in pngex.cc in advpng has an integer overflow upon encountering an invalid PNG size, wh... |
| CVE-2019-9162 | HIGH | 7.8 | 1.1% | Feb 25, 2019 | In the Linux kernel before 4.20.12, net/ipv4/netfilter/nf_nat_snmp_basic_main.c in the SNMP NAT module has insufficient ... |
| CVE-2019-1689 | HIGH | 7.3 | 1.6% | Feb 25, 2019 | A vulnerability in the client application for iOS of Cisco Webex Teams could allow an authenticated, remote attacker to ... |
Check if your code is affected by 2019 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now