2019 CVE Vulnerabilities
17,620 CVEs published in 2019.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2019-10124 | — | — | — | Mar 27, 2019 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Fu... |
| CVE-2019-10118 | — | — | 0.8% | Mar 27, 2019 | Snipe-IT before 4.6.14 has XSS, as demonstrated by log_meta values and the user's last name in the API. |
| CVE-2019-7167 | — | — | 1.7% | Mar 27, 2019 | Zcash, before the Sapling network upgrade (2018-10-28), had a counterfeiting vulnerability. A key-generation process, du... |
| CVE-2019-1571 | — | — | 1.1% | Mar 26, 2019 | The Expedition Migration tool 1.1.8 and earlier may allow an authenticated attacker to run arbitrary JavaScript or HTML ... |
| CVE-2019-1572 | — | — | 2.5% | Mar 26, 2019 | PAN-OS 9.0.0 may allow an unauthenticated remote user to access php files. |
| CVE-2019-1570 | — | — | 1.1% | Mar 26, 2019 | The Expedition Migration tool 1.1.8 and earlier may allow an authenticated attacker to run arbitrary JavaScript or HTML ... |
| CVE-2019-1569 | — | — | 1.1% | Mar 26, 2019 | The Expedition Migration tool 1.1.8 and earlier may allow an authenticated attacker to run arbitrary JavaScript or HTML ... |
| CVE-2019-10107 | — | — | 0.7% | Mar 26, 2019 | CMS Made Simple 2.2.10 has XSS via the myaccount.php "Email Address" field, which is reachable via the "My Preferences -... |
| CVE-2019-10106 | — | — | 0.7% | Mar 26, 2019 | CMS Made Simple 2.2.10 has XSS via the 'moduleinterface.php' Name field, which is reachable via an "Add Category" action... |
| CVE-2019-10105 | — | — | 0.7% | Mar 26, 2019 | CMS Made Simple 2.2.10 has a Self-XSS vulnerability via the Layout Design Manager "Name" field, which is reachable via a... |
| CVE-2019-9744 | — | — | 1.6% | Mar 26, 2019 | An issue was discovered on PHOENIX CONTACT FL NAT SMCS 8TX, FL NAT SMN 8TX, FL NAT SMN 8TX-M, and FL NAT SMN 8TX-M-DMG d... |
| CVE-2019-9743 | — | — | 3.5% | Mar 26, 2019 | An issue was discovered on PHOENIX CONTACT RAD-80211-XD and RAD-80211-XD/HP-BUS devices. Command injection can occur in ... |
| CVE-2019-9961 | — | — | 0.8% | Mar 26, 2019 | A cross-site scripting (XSS) vulnerability in ressource view in core/modules/resource/RESOURCEVIEW.php in Wikindx prior ... |
| CVE-2019-6341 | — | — | 12.4% | Mar 26, 2019 | In Drupal 7 versions prior to 7.65; Drupal 8.6 versions prior to 8.6.13;Drupal 8.5 versions prior to 8.5.14. Under certa... |
| CVE-2019-9059 | — | — | 1.8% | Mar 26, 2019 | An issue was discovered in CMS Made Simple 2.2.8. It is possible, with an administrator account, to achieve command inje... |
| CVE-2019-9055 | — | — | 12.5% | Mar 26, 2019 | An issue was discovered in CMS Made Simple 2.2.8. In the module DesignManager (in the files action.admin_bulk_css.php an... |
| CVE-2019-9053 | — | — | 56.0% | Mar 26, 2019 | An issue was discovered in CMS Made Simple 2.2.8. It is possible with the News module, through a crafted URL, to achieve... |
| CVE-2019-7646 | — | — | 7.2% | Mar 26, 2019 | CentOS-WebPanel.com (aka CWP) CentOS Web Panel through 0.9.8.763 is vulnerable to Stored/Persistent XSS for the "Package... |
| CVE-2019-9764 | — | — | 0.6% | Mar 26, 2019 | HashiCorp Consul 1.4.3 lacks server hostname verification for agent-to-agent TLS communication. In other words, the prod... |
| CVE-2019-10063 | — | — | 1.9% | Mar 26, 2019 | Flatpak before 1.0.8, 1.1.x and 1.2.x before 1.2.4, and 1.3.x before 1.3.1 allows a sandbox bypass. Flatpak versions sin... |
| CVE-2019-8981 | — | — | 2.7% | Mar 26, 2019 | tls1.c in Cameron Hamilton-Rich axTLS before 2.1.5 has a Buffer Overflow via a crafted sequence of TLS packets because t... |
| CVE-2019-7715 | — | — | 1.5% | Mar 26, 2019 | An issue was discovered in the Interpeak IPCOMShell TELNET server on Green Hills INTEGRITY RTOS 5.0.4. The main shell ha... |
| CVE-2019-7714 | — | — | 2.1% | Mar 26, 2019 | An issue was discovered in Interpeak IPWEBS on Green Hills INTEGRITY RTOS 5.0.4. It allocates 60 bytes for the HTTP Auth... |
| CVE-2019-7713 | — | — | 1.9% | Mar 26, 2019 | An issue was discovered in the Interpeak IPCOMShell TELNET server on Green Hills INTEGRITY RTOS 5.0.4. There is a heap-b... |
| CVE-2019-7712 | — | — | 1.5% | Mar 26, 2019 | An issue was discovered in handler_ipcom_shell_pwd in the Interpeak IPCOMShell TELNET server on Green Hills INTEGRITY RT... |
Check if your code is affected by 2019 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now