2019 CVE Vulnerabilities
17,620 CVEs published in 2019.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2019-7422 | — | — | 2.7% | Mar 21, 2019 | XSS exists in Zoho ManageEngine Netflow Analyzer Professional v7.0.0.2 in the Administration zone "/netflow/jspui/addMai... |
| CVE-2019-7421 | — | — | 1.5% | Mar 21, 2019 | XSS exists in SAMSUNG X7400GX SyncThru Web Service V6.A6.25 V11.01.05.25_08-21-2015 in "/sws.login/gnb/loginView.sws" in... |
| CVE-2019-7420 | — | — | 1.5% | Mar 21, 2019 | XSS exists in SAMSUNG X7400GX SyncThru Web Service V6.A6.25 V11.01.05.25_08-21-2015 in "/sws.application/information/net... |
| CVE-2019-7419 | — | — | 1.5% | Mar 21, 2019 | XSS exists in SAMSUNG X7400GX SyncThru Web Service V6.A6.25 V11.01.05.25_08-21-2015 in "/sws/leftmenu.sws" in multiple p... |
| CVE-2019-7418 | — | — | 1.6% | Mar 21, 2019 | XSS exists in SAMSUNG X7400GX SyncThru Web Service V6.A6.25 V11.01.05.25_08-21-2015 in "/sws/swsAlert.sws" in multiple p... |
| CVE-2019-7417 | — | — | 1.5% | Mar 21, 2019 | XSS exists in Ericsson Active Library Explorer (ALEX) 14.3 in multiple parameters in the "/cgi-bin/alexserv" servlet, as... |
| CVE-2019-7416 | — | — | 1.5% | Mar 21, 2019 | XSS and/or a Client Side URL Redirect exists in OpenText Documentum Webtop 5.3 SP2. The parameter startat in "/webtop/he... |
| CVE-2019-7391 | — | — | 13.6% | Mar 21, 2019 | ZyXEL VMG3312-B10B DSL-491HNU-B1B v2 devices allow login/login-page.cgi CSRF. |
| CVE-2019-7386 | — | — | 3.7% | Mar 21, 2019 | A Denial of Service issue has been discovered in the Gecko component of KaiOS 2.5 10.05 (platform 48.0.a2) on Nokia 8810... |
| CVE-2019-7299 | — | — | 1.7% | Mar 21, 2019 | A stored cross-site scripting (XSS) vulnerability in the submit_ticket.php module in the WP Support Plus Responsive Tick... |
| CVE-2019-7223 | — | — | 0.7% | Mar 21, 2019 | InvoicePlane 1.5 has stored XSS via the index.php/invoices/ajax/save invoice_password parameter, aka the "PDF password" ... |
| CVE-2019-7221 | — | — | 0.8% | Mar 21, 2019 | The KVM implementation in the Linux kernel through 4.20.5 has a Use-after-Free. |
| CVE-2019-7161 | — | — | 5.6% | Mar 21, 2019 | An issue was discovered in Zoho ManageEngine ADSelfService Plus 5.x through build 5704. It uses fixed ciphering keys to ... |
| CVE-2019-6973 | — | — | 13.8% | Mar 21, 2019 | Sricam IP CCTV cameras are vulnerable to denial of service via multiple incomplete HTTP requests because the web server ... |
| CVE-2019-6970 | — | — | 1.2% | Mar 21, 2019 | Moodle 3.5.x before 3.5.4 allows SSRF. |
| CVE-2019-6967 | — | — | 13.5% | Mar 21, 2019 | AirTies Air5341 1.0.0.12 devices allow cgi-bin/login CSRF. |
| CVE-2019-6778 | — | — | 0.6% | Mar 21, 2019 | In QEMU 3.0.0, tcp_emu in slirp/tcp_subr.c has a heap-based buffer overflow. |
| CVE-2019-6724 | — | — | 0.5% | Mar 21, 2019 | The barracudavpn component of the Barracuda VPN Client prior to version 5.0.2.7 for Linux, macOS, and OpenBSD runs as a ... |
| CVE-2019-6716 | — | — | 9.6% | Mar 21, 2019 | An unauthenticated Insecure Direct Object Reference (IDOR) in Wicket Core in LogonBox Nervepoint Access Manager 2013 thr... |
| CVE-2019-6714 | — | — | 31.7% | Mar 21, 2019 | An issue was discovered in BlogEngine.NET through 3.3.6.0. A path traversal and Local File Inclusion vulnerability in Po... |
| CVE-2019-6702 | — | — | 1.4% | Mar 21, 2019 | The MasterCard Qkr! app before 5.0.8 for iOS has Missing SSL Certificate Validation. NOTE: this CVE only applies to obso... |
| CVE-2019-6501 | — | — | 0.6% | Mar 21, 2019 | In QEMU 3.1, scsi_handle_inquiry_reply in hw/scsi/scsi-generic.c allows out-of-bounds write and read operations. |
| CVE-2019-6492 | — | — | 0.5% | Mar 21, 2019 | SmartDefragDriver.sys (2.0) in IObit Smart Defrag 6 never frees an executable kernel pool that is allocated with user de... |
| CVE-2019-6441 | — | — | 53.6% | Mar 21, 2019 | An issue was discovered on Shenzhen Coship RT3050 4.0.0.40, RT3052 4.0.0.48, RT7620 10.0.0.49, WM3300 5.0.0.54, and WM33... |
| CVE-2019-6282 | — | — | 3.0% | Mar 21, 2019 | ChinaMobile PLC Wireless Router GPN2.4P21-C-CN devices with firmware W2001EN-00 have CSRF via the cgi-bin/webproc?getpag... |
Check if your code is affected by 2019 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now