2019 CVE Vulnerabilities

17,620 CVEs published in 2019.

CVE IDSeverityCVSSDescription
CVE-2019-7483HIGH7.5In SonicWall SMA100, an unauthenticated Directory Traversal vulnerability in the handleWAFRedirect CGI allows the user t...
CVE-2019-7482CRITICAL9.8Stack-based buffer overflow in SonicWall SMA100 allows an unauthenticated user to execute arbitrary code in function lib...
CVE-2019-15006MEDIUM6.5There was a man-in-the-middle (MITM) vulnerability present in the Confluence Previews plugin in Confluence Server and Co...
CVE-2019-19899CRITICAL9.8Pebble Templates 3.1.2 allows attackers to bypass a protection mechanism (intended to block access to instances of java....
CVE-2019-17390HIGH7.8An issue was discovered in the Outlook add-in in Pronestor Planner before 8.1.77. There is local privilege escalation in...
CVE-2019-19788MEDIUM5.5Opera for Android before 54.0.2669.49432 is vulnerable to a sandboxed cross-origin iframe bypass attack. By using a serv...
CVE-2019-18781MEDIUM6.1An open redirect vulnerability was discovered in Zoho ManageEngine ADSelfService Plus 5.x before 5809 that allows attack...
CVE-2019-11147HIGH7.8Insufficient access control in hardware abstraction driver for MEInfo software for Intel(R) CSME before versions 11.8.70...
CVE-2019-11132HIGH8.4Cross site scripting in subsystem in Intel(R) AMT before versions 11.8.70, 11.11.70, 11.22.70 and 12.0.45 may allow a pr...
CVE-2019-11131CRITICAL9.8Logic issue in subsystem in Intel(R) AMT before versions 11.8.70, 11.11.70, 11.22.70 and 12.0.45 may allow an unauthenti...
CVE-2019-11110MEDIUM6.7Authentication bypass in the subsystem for Intel(R) CSME before versions 11.8.70, 11.11.70, 11.22.70, 12.0.45, 13.0.10 a...
CVE-2019-11109MEDIUM4.4Logic issue in the subsystem for Intel(R) SPS before versions SPS_E5_04.01.04.275.0, SPS_SoC-X_04.00.04.100.0 and SPS_So...
CVE-2019-11108MEDIUM6.7Insufficient input validation in subsystem for Intel(R) CSME before versions 12.0.45 and 13.0.10 may allow a privileged ...
CVE-2019-11107CRITICAL9.8Insufficient input validation in the subsystem for Intel(R) AMT before version 12.0.45 may allow an unauthenticated user...
CVE-2019-11106MEDIUM6.7Insufficient session validation in the subsystem for Intel(R) CSME before versions 11.8.70, 12.0.45, 13.0.10 and 14.0.10...
CVE-2019-11105MEDIUM6.7Logic issue in subsystem for Intel(R) CSME before versions 12.0.45, 13.0.10 and 14.0.10 may allow a privileged user to p...
CVE-2019-11104HIGH7.8Insufficient input validation in MEInfo software for Intel(R) CSME before versions 11.8.70, 11.11.70, 11.22.70, 12.0.45,...
CVE-2019-11103HIGH7.8Insufficient input validation in firmware update software for Intel(R) CSME before versions 12.0.45,13.0.10 and 14.0.10 ...
CVE-2019-11102MEDIUM4.4Insufficient input validation in Intel(R) DAL software for Intel(R) CSME before versions 11.8.70, 11.11.70, 11.22.70, 12...
CVE-2019-11101MEDIUM4.4Insufficient input validation in the subsystem for Intel(R) CSME before versions 11.8.70, 11.11.70, 11.22.70, 12.0.45, 1...
CVE-2019-11100MEDIUM4.6Insufficient input validation in the subsystem for Intel(R) AMT before versions 11.8.70, 11.11.70, 11.22.70 and 12.0.45 ...
CVE-2019-11097HIGH7.8Improper directory permissions in the installer for Intel(R) Management Engine Consumer Driver for Windows before versio...
CVE-2019-11090MEDIUM5.9Cryptographic timing conditions in the subsystem for Intel(R) PTT before versions 11.8.70, 11.11.70, 11.22.70, 12.0.45, ...
CVE-2019-11088HIGH8.8Insufficient input validation in subsystem in Intel(R) AMT before versions 11.8.70, 11.11.70, 11.22.70 and 12.0.45 may a...
CVE-2019-11087MEDIUM6.7Insufficient input validation in the subsystem for Intel(R) CSME before versions 11.8.70, 11.11.70, 11.22.70, 12.0.45, 1...

Check if your code is affected by 2019 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now