2019 CVE Vulnerabilities

17,620 CVEs published in 2019.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2019-1595HIGH7.4A vulnerability in the Fibre Channel over Ethernet (FCoE) protocol implementation in Cisco NX-OS Software could allow an...
CVE-2019-1594HIGH7.4A vulnerability in the 802.1X implementation for Cisco NX-OS Software could allow an unauthenticated, adjacent attacker ...
CVE-2019-1593HIGH7.8A vulnerability in the Bash shell implementation for Cisco NX-OS Software could allow an authenticated, local attacker t...
CVE-2019-1591HIGH7.8A vulnerability in a specific CLI command implementation of Cisco Nexus 9000 Series ACI Mode Switch Software could allow...
CVE-2019-9581HIGH8.8phpscheduleit Booked Scheduler 2.7.5 allows arbitrary file upload via the Favicon field, leading to execution of arbitra...
CVE-2019-0724HIGH8.1An elevation of privilege vulnerability exists in Microsoft Exchange Server, aka 'Microsoft Exchange Server Elevation of...
CVE-2019-3921HIGH8.8The Alcatel Lucent I-240W-Q GPON ONT using firmware version 3FE54567BOZJ19 is vulnerable to a stack buffer overflow via ...
CVE-2019-3920HIGH8.8The Alcatel Lucent I-240W-Q GPON ONT using firmware version 3FE54567BOZJ19 is vulnerable to authenticated command inject...
CVE-2019-3919HIGH8.8The Alcatel Lucent I-240W-Q GPON ONT using firmware version 3FE54567BOZJ19 is vulnerable to command injection via crafte...
CVE-2019-3917HIGH7.5The Alcatel Lucent I-240W-Q GPON ONT using firmware version 3FE54567BOZJ19 allows a remote, unauthenticated attacker to ...
CVE-2019-6561HIGH8.8Cross-site request forgery has been identified in Moxa IKS and EDS, which may allow for the execution of unauthorized ac...
CVE-2019-6528HIGH8.8PSI GridConnect GmbH Telecontrol Gateway and Smart Telecontrol Unit family, IEC104 Security Proxy versions Telecontrol G...
CVE-2019-6520HIGH7.5Moxa IKS and EDS does not properly check authority on server side, which results in a read-only user being able to perfo...
CVE-2019-6518HIGH7.5Moxa IKS and EDS store plaintext passwords, which may allow sensitive information to be read by someone with access to t...
CVE-2019-6223HIGH7.5A logic issue existed in the handling of Group FaceTime calls. The issue was addressed with improved state management. T...
CVE-2019-8259HIGH7.5UltraVNC revision 1198 contains multiple memory leaks (CWE-655) in VNC client code, which allow an attacker to read stac...
CVE-2019-6551HIGH7.5Pangea Communications Internet FAX ATA all Versions 3.1.8 and prior allow an attacker to bypass user authentication usin...
CVE-2019-6555HIGH7.8Cscape, 9.80 SP4 and prior. An improper input validation vulnerability may be exploited by processing specially crafted ...
CVE-2019-1674HIGH7.8A vulnerability in the update service of Cisco Webex Meetings Desktop App and Cisco Webex Productivity Tools for Windows...
CVE-2019-1999HIGH7.8In binder_alloc_free_page of binder_alloc.c, there is a possible double free due to improper locking. This could lead to...
CVE-2019-3599HIGH7.5Information Disclosure vulnerability in Remote logging (which is disabled by default) in McAfee Agent (MA) 5.x allows re...
CVE-2019-3582HIGH8.6Privilege Escalation vulnerability in Microsoft Windows client in McAfee Endpoint Security (ENS) 10.6.1 and earlier allo...
CVE-2019-9210HIGH7.8In AdvanceCOMP 2.1, png_compress in pngex.cc in advpng has an integer overflow upon encountering an invalid PNG size, wh...
CVE-2019-9162HIGH7.8In the Linux kernel before 4.20.12, net/ipv4/netfilter/nf_nat_snmp_basic_main.c in the SNMP NAT module has insufficient ...
CVE-2019-1689HIGH7.3A vulnerability in the client application for iOS of Cisco Webex Teams could allow an authenticated, remote attacker to ...

Check if your code is affected by 2019 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now