2019 CVE Vulnerabilities

17,620 CVEs published in 2019.

CVE IDSeverityCVSSDescription
CVE-2019-19546MEDIUM6.5Norton Password Manager, prior to 6.6.2.5, may be susceptible to an information disclosure issue, which is a type of vul...
CVE-2019-19545MEDIUM6.3Norton Password Manager, prior to 6.6.2.5, may be susceptible to a cross origin resource sharing (CORS) vulnerability, w...
CVE-2019-18381MEDIUM6.3Norton Password Manager, prior to 6.6.2.5, may be susceptible to a cross origin resource sharing (CORS) vulnerability, w...
CVE-2019-17388HIGH7.8Weak file permissions applied to the Aviatrix VPN Client through 2.2.10 installation directory on Windows and Linux allo...
CVE-2019-17387HIGH7.8An authentication flaw in the AVPNC_RP service in Aviatrix VPN Client through 2.2.10 allows an attacker to gain elevated...
CVE-2019-7195CRITICAL9.8This external control of file name or path vulnerability allows remote attackers to access or modify system files. To fi...
CVE-2019-7194CRITICAL9.8This external control of file name or path vulnerability allows remote attackers to access or modify system files. To fi...
CVE-2019-7193CRITICAL9.8This improper input validation vulnerability allows remote attackers to inject arbitrary code to the system. To fix the ...
CVE-2019-7192CRITICAL9.8This improper access control vulnerability allows remote attackers to gain unauthorized access to the system. To fix the...
CVE-2019-7185MEDIUM4.8This cross-site scripting (XSS) vulnerability in Music Station allows remote attackers to inject and execute scripts on ...
CVE-2019-7184MEDIUM4.8This cross-site scripting (XSS) vulnerability in Video Station allows remote attackers to inject and execute scripts on ...
CVE-2019-7183CRITICAL9.8This improper link resolution vulnerability allows remote attackers to access system files. To fix this vulnerability, Q...
CVE-2019-19466MEDIUM6.1SCEditor 2.1.3 allows XSS.
CVE-2019-3690HIGH7.8The chkstat tool in the permissions package followed symlinks before commit a9e1d26cd49ef9ee0c2060c859321128a6dd4230 (pl...
CVE-2019-19595CRITICAL9.8reset/modules/advanced_form_maker_edit/multiupload/upload.php in the RESET.PRO Adobe Stock API integration 4.8 for Prest...
CVE-2019-19594CRITICAL9.8reset/modules/fotoliaFoto/multi_upload.php in the RESET.PRO Adobe Stock API Integration for PrestaShop 1.6 and 1.7 allow...
CVE-2019-19008Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2019-19363. Reason: This candidate is a reservation d...
CVE-2019-19007HIGH7.2Intelbras IWR 3000N 1.8.7 devices allow disclosure of the administrator login name and password because v1/system/user i...
CVE-2019-15897CRITICAL9.6beegfs-ctl in ThinkParQ BeeGFS through 7.1.3 allows Authentication Bypass via communication with a BeeGFS metadata serve...
CVE-2019-11255MEDIUM6.5Improper input validation in Kubernetes CSI sidecar containers for external-provisioner (<v0.4.3, <v1.0.2, v1.1, <v1.2.2...
CVE-2019-18180HIGH7.5Improper Check for filenames with overly long extensions in PostMaster (sending in email) or uploading files (e.g. attac...
CVE-2019-17437HIGH7.8An improper authentication check in Palo Alto Networks PAN-OS may allow an authenticated low privileged non-superuser cu...
CVE-2019-14910CRITICAL9.8A vulnerability was found in keycloak 7.x, when keycloak is configured with LDAP user federation and StartTLS is used in...
CVE-2019-19602MEDIUM6.1fpregs_state_valid in arch/x86/include/asm/fpu/internal.h in the Linux kernel before 5.4.2, when GCC 9 is used, allows c...
CVE-2019-19317CRITICAL9.8lookupName in resolve.c in SQLite 3.30.1 omits bits from the colUsed bitmask in the case of a generated column, which al...

Check if your code is affected by 2019 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now