2019 CVE Vulnerabilities

17,618 CVEs published in 2019.

CVE IDSeverityCVSSDescription
CVE-2019-25738CRITICAL9.3WordPress Hybrid Composer 1.4.6 contains an unauthenticated settings change vulnerability that allows unauthenticated at...
CVE-2019-25737MEDIUM5.3Live Chat Unlimited 2.8.3 contains a stored cross-site scripting vulnerability that allows unauthenticated attackers to ...
CVE-2019-25736HIGH8.6LabF nfsAxe 3.7 Ping Client contains a buffer overflow vulnerability that allows local attackers to execute arbitrary co...
CVE-2019-25735HIGH8.6AllPlayer 7.4 contains a local buffer overflow vulnerability in URL handling that allows attackers to overwrite structur...
CVE-2019-25734MEDIUM5.1Contact Form by WD 1.13.1 contains a cross-site request forgery vulnerability combined with local file inclusion that al...
CVE-2019-25733HIGH8.6NetShareWatcher 1.5.8.0 contains a structured exception handler buffer overflow vulnerability that allows local attacker...
CVE-2019-25732HIGH8.8PHP EI-Tube Script 3 contains an SQL injection vulnerability that allows unauthenticated attackers to execute arbitrary ...
CVE-2019-25731MEDIUM5.3Zuz Music 2.1 contains a persistent cross-site scripting vulnerability that allows unauthenticated attackers to inject m...
CVE-2019-25730HIGH8.8Listing Hub CMS 1.0 contains a SQL injection vulnerability that allows unauthenticated attackers to execute arbitrary SQ...
CVE-2019-25729CRITICAL9.3PDF Signer 3.0 contains a server-side template injection vulnerability that allows unauthenticated attackers to execute ...
CVE-2019-25728HIGH8.8Care2x 2.7 contains multiple SQL injection vulnerabilities that allow unauthenticated attackers to execute arbitrary SQL...
CVE-2019-25727CRITICAL9.3WordPress Plugin ad manager wd 1.0.11 contains an arbitrary file download vulnerability that allows unauthenticated atta...
CVE-2019-25726HIGH8.8All in One Video Downloader 1.2 contains an SQL injection vulnerability that allows unauthenticated attackers to execute...
CVE-2019-25720HIGH7.1Dräger SC Monitoring devices (SC 6002XL, SC 6802XL, SC 7000, SC 8000, SC 9000 XL) contain a denial-of-service vulnerabil...
CVE-2019-25724HIGH7.1Dräger Infinity M300 patient worn monitors with software version VG2.x and earlier contain a network-based denial of ser...
CVE-2019-25723MEDIUM6.3Dräger Perseus A500 software versions 2.00 through 2.02 contains an improper input handling vulnerability that allows ex...
CVE-2019-25722HIGH7.2Dräger SC Monitoring devices (SC 6002XL, SC 6802XL, SC 7000, SC 8000, SC 9000 XL) contain hard-coded plaintext credentia...
CVE-2019-25721HIGH7.1Dräger Infinity M300 patient worn monitors with software version VG2.3.1 and earlier contain a network-based denial of s...
CVE-2019-25719HIGH8.8Dräger Infinity Acute Care System and Standalone Infinity M540 patient monitors running software versions VG4.1.1, VG4.0...
CVE-2019-25717MEDIUM5.3Dräger Infinity Delta, Delta XL, and Kappa patient monitors contain an information disclosure vulnerability that allows ...
CVE-2019-25718HIGH8.6Dräger Infinity Explorer C700 contains a privilege escalation vulnerability that allows attackers to break out of kiosk ...
CVE-2019-25716HIGH7.1Dräger Infinity Delta, Delta XL, and Kappa patient monitors contain a denial-of-service vulnerability that allows remote...
CVE-2019-25714CRITICAL9.3Seeyon OA A8 contains an unauthenticated arbitrary file write vulnerability in the /seeyon/htmlofficeservlet endpoint th...
CVE-2019-25713HIGH7.1MyT-PM 1.5.1 contains an SQL injection vulnerability that allows authenticated attackers to execute arbitrary SQL querie...
CVE-2019-25712MEDIUM6.9BlueAuditor 1.7.2.0 contains a buffer overflow vulnerability in the registration key field that allows local attackers t...

Check if your code is affected by 2019 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now