2019 CVE Vulnerabilities

17,620 CVEs published in 2019.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2019-1669HIGH8.6A vulnerability in the data acquisition (DAQ) component of Cisco Firepower Threat Defense (FTD) Software could allow an ...
CVE-2019-1653HIGH7.5A vulnerability in the web-based management interface of Cisco Small Business RV320 and RV325 Dual Gigabit WAN VPN Route...
CVE-2019-1652HIGH7.2A vulnerability in the web-based management interface of Cisco Small Business RV320 and RV325 Dual Gigabit WAN VPN Route...
CVE-2019-1650HIGH8.8A vulnerability in the Cisco SD-WAN Solution could allow an authenticated, remote attacker to overwrite arbitrary files ...
CVE-2019-1648HIGH7.8A vulnerability in the user group configuration of the Cisco SD-WAN Solution could allow an authenticated, local attacke...
CVE-2019-1647HIGH8A vulnerability in the Cisco SD-WAN Solution could allow an authenticated, adjacent attacker to bypass authentication an...
CVE-2019-1646HIGH7.8A vulnerability in the local CLI of the Cisco SD-WAN Solution could allow an authenticated, local attacker to escalate p...
CVE-2019-1644HIGH7.5A vulnerability in the UDP protocol implementation for Cisco IoT Field Network Director (IoT-FND) could allow an unauthe...
CVE-2019-1641HIGH7.8A vulnerability in the Cisco Webex Network Recording Player for Microsoft Windows and the Cisco Webex Player for Microso...
CVE-2019-1640HIGH7.8A vulnerability in the Cisco Webex Network Recording Player for Microsoft Windows and the Cisco Webex Player for Microso...
CVE-2019-1639HIGH7.8A vulnerability in the Cisco Webex Network Recording Player for Microsoft Windows and the Cisco Webex Player for Microso...
CVE-2019-1638HIGH7.8A vulnerability in the Cisco Webex Network Recording Player for Microsoft Windows and the Cisco Webex Player for Microso...
CVE-2019-1637HIGH7.8A vulnerability in the Cisco Webex Network Recording Player for Microsoft Windows and the Cisco Webex Player for Microso...
CVE-2019-1636HIGH7.8A vulnerability in the Cisco Webex Teams client, formerly Cisco Spark, could allow an attacker to execute arbitrary comm...
CVE-2019-6706HIGH7.5Lua 5.3.5 has a use-after-free in lua_upvaluejoin in lapi.c. For example, a crash outcome might be achieved by an attack...
CVE-2019-3587HIGH7.2DLL Search Order Hijacking vulnerability in Microsoft Windows client in McAfee Total Protection (MTP) Prior to 16.0.18 a...
CVE-2019-3584HIGH7.4Exploitation of Authentication vulnerability in MVision Endpoint in McAfee MVision Endpoint Prior to 1811 Update 1 (18.1...
CVE-2019-1003004HIGH7.2An improper authorization vulnerability exists in Jenkins 2.158 and earlier, LTS 2.150.1 and earlier in core/src/main/ja...
CVE-2019-1003003HIGH7.2An improper authorization vulnerability exists in Jenkins 2.158 and earlier, LTS 2.150.1 and earlier in core/src/main/ja...
CVE-2019-1003002HIGH8.8A sandbox bypass vulnerability exists in Pipeline: Declarative Plugin 1.3.3 and earlier in pipeline-model-definition/src...
CVE-2019-1003001HIGH8.8A sandbox bypass vulnerability exists in Pipeline: Groovy Plugin 2.61 and earlier in src/main/java/org/jenkinsci/plugins...
CVE-2019-1003000HIGH8.8A sandbox bypass vulnerability exists in Script Security Plugin 1.49 and earlier in src/main/java/org/jenkinsci/plugins/...
CVE-2019-3908HIGH7.5Premisys Identicard version 3.1.190 stores backup files as encrypted zip files. The password to the zip is hard-coded an...
CVE-2019-3907HIGH7.5Premisys Identicard version 3.1.190 stores user credentials and other sensitive information with a known weak encryption...
CVE-2019-3906HIGH8.8Premisys Identicard version 3.1.190 contains hardcoded credentials in the WCF service on port 9003. An authenticated rem...

Check if your code is affected by 2019 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now