2019 CVE Vulnerabilities
17,619 CVEs published in 2019.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2019-25277 | MEDIUM | 6.1 | 0.3% | Jan 8, 2026 | FaceSentry Access Control System 6.4.8 contains a cross-site scripting vulnerability in the 'msg' parameter of pluginIns... |
| CVE-2019-25270 | MEDIUM | 6.1 | 0.2% | Jan 8, 2026 | SOCA Access Control System 180612 contains a cross-site scripting vulnerability in the 'senddata' POST parameter of logg... |
| CVE-2019-25268 | CRITICAL | 9.8 | 0.4% | Jan 8, 2026 | NREL BEopt 2.8.0.0 contains a DLL hijacking vulnerability that allows attackers to load arbitrary libraries by tricking ... |
| CVE-2019-25259 | MEDIUM | 5.3 | 0.1% | Jan 8, 2026 | Leica Geosystems GR10/GR25/GR30/GR50 GNSS 4.30.063 contains a cross-site request forgery vulnerability that allows attac... |
| CVE-2019-25231 | HIGH | 8.5 | 0.1% | Jan 8, 2026 | devolo dLAN Cockpit 4.3.1 contains an unquoted service path vulnerability in the 'DevoloNetworkService' that allows loca... |
| CVE-2019-25262 | MEDIUM | 5.1 | 0.2% | Dec 31, 2025 | A security vulnerability has been detected in elinicksic Razgover up to db37dfc5c82f023a40f2f7834ded6633fb2b5262. This a... |
| CVE-2019-25258 | HIGH | 7.5 | 1.0% | Dec 24, 2025 | LogicalDOC Enterprise 7.7.4 contains multiple post-authentication file disclosure vulnerabilities that allow attackers t... |
| CVE-2019-25257 | HIGH | 8.7 | 0.4% | Dec 24, 2025 | LogicalDOC Enterprise 7.7.4 contains multiple authenticated OS command execution vulnerabilities that allow attackers to... |
| CVE-2019-25256 | HIGH | 7.1 | 0.5% | Dec 24, 2025 | VideoFlow Digital Video Protection DVP 2.10 contains an authenticated directory traversal vulnerability that allows atta... |
| CVE-2019-25255 | HIGH | 8.7 | 0.4% | Dec 24, 2025 | VideoFlow Digital Video Protection DVP 2.10 contains an authenticated remote code execution vulnerability that allows at... |
| CVE-2019-25254 | HIGH | 8.8 | 0.3% | Dec 24, 2025 | KYOCERA Net Admin 3.4.0906 contains a cross-site request forgery vulnerability that allows attackers to create administr... |
| CVE-2019-25253 | HIGH | 7.5 | 0.8% | Dec 24, 2025 | KYOCERA Net Admin 3.4.0906 contains an XML External Entity (XXE) injection vulnerability in the Multi-Set Template Edito... |
| CVE-2019-25252 | MEDIUM | 5.1 | 0.2% | Dec 24, 2025 | Teradek VidiU Pro 3.0.3 contains a cross-site request forgery vulnerability that allows attackers to change administrati... |
| CVE-2019-25251 | MEDIUM | 6.9 | 0.3% | Dec 24, 2025 | Teradek VidiU Pro 3.0.3 contains a server-side request forgery vulnerability in the management interface that allows att... |
| CVE-2019-25250 | MEDIUM | 5.3 | 0.1% | Dec 24, 2025 | Devolo dLAN 500 AV Wireless+ 3.1.0-1 contains a cross-site request forgery vulnerability that allows attackers to perfor... |
| CVE-2019-25249 | CRITICAL | 9.8 | 0.4% | Dec 24, 2025 | devolo dLAN 500 AV Wireless+ 3.1.0-1 contains an authentication bypass vulnerability that allows attackers to enable hid... |
| CVE-2019-25248 | HIGH | 8.7 | 0.4% | Dec 24, 2025 | Beward N100 M2.1.6.04C014 contains an unauthenticated vulnerability that allows remote attackers to access live video st... |
| CVE-2019-25247 | MEDIUM | 5.3 | 0.1% | Dec 24, 2025 | Beward N100 H.264 VGA IP Camera M2.1.6 contains a cross-site request forgery vulnerability that allows attackers to perf... |
| CVE-2019-25246 | HIGH | 8.8 | 17.4% | Dec 24, 2025 | Beward N100 H.264 VGA IP Camera M2.1.6 contains an authenticated file disclosure vulnerability that allows attackers to ... |
| CVE-2019-25245 | HIGH | 8.8 | 0.2% | Dec 24, 2025 | Ross Video DashBoard 8.5.1 contains an elevation of privileges vulnerability that allows authenticated users to modify e... |
| CVE-2019-25244 | MEDIUM | 5.3 | 0.2% | Dec 24, 2025 | Legrand BTicino Driver Manager F454 1.0.51 contains multiple web vulnerabilities that allow attackers to perform adminis... |
| CVE-2019-25243 | HIGH | 8.8 | 2.3% | Dec 24, 2025 | FaceSentry 6.4.8 contains an authenticated remote command injection vulnerability in pingTest.php and tcpPortTest.php sc... |
| CVE-2019-25242 | MEDIUM | 5.1 | 0.2% | Dec 24, 2025 | FaceSentry Access Control System 6.4.8 contains a cross-site request forgery vulnerability that allows attackers to perf... |
| CVE-2019-25241 | CRITICAL | 9.8 | 0.7% | Dec 24, 2025 | FaceSentry Access Control System 6.4.8 contains a critical authentication vulnerability with hard-coded SSH credentials ... |
| CVE-2019-25240 | CRITICAL | 9.8 | 0.4% | Dec 24, 2025 | Rifatron 5brid DVR contains an unauthenticated vulnerability in the animate.cgi script that allows unauthorized access t... |
Check if your code is affected by 2019 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now