2019 CVE Vulnerabilities

17,619 CVEs published in 2019.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2019-18223MEDIUM5.4ZOOM International Call Recording 6.3.1 suffers from multiple authenticated stored XSS vulnerabilities via the phoneNumb...
CVE-2019-20789MEDIUM4.8Croogo before 3.0.7 allows XSS via the title to admin/menus/menus or admin/taxonomy/vocabularies.
CVE-2019-4751MEDIUM5.3IBM Cloud App Management 2019.3.0 and 2019.4.0 reveals a stack trace on certain API requests which can allow an attacker...
CVE-2019-15794MEDIUM6.7Overlayfs in the Linux kernel and shiftfs, a non-upstream patch to the Linux kernel included in the Ubuntu 5.0 and 5.3 k...
CVE-2019-17101MEDIUM6.7Improper Neutralization of Special Elements used in a Command ('Command Injection') vulnerability in firmware versions p...
CVE-2019-4735MEDIUM4.6IBM MaaS360 3.96.62 for iOS could allow an attacker with physical access to the device to obtain sensitive information f...
CVE-2019-4668MEDIUM5.5IBM UrbanCode Deploy (UCD) 7.0.4.0 stores user credentials in plain in clear text which can be read by a local user. IBM...
CVE-2019-19107MEDIUM5.5The Configuration pages in ABB Telephone Gateway TG/S 3.2 and Busch-Jaeger 6186/11 Telefon-Gateway for user profiles and...
CVE-2019-19105MEDIUM5.5The backup function in ABB Telephone Gateway TG/S 3.2 and Busch-Jaeger 6186/11 Telefon-Gateway saves the current setting...
CVE-2019-20102MEDIUM6.1The attachment-uploading feature in Atlassian Confluence Server from version 6.14.0 through version 6.14.3, and version ...
CVE-2019-2056MEDIUM5.5There is a possible disclosure of RAM using a shared crypto key due to improperly used crypto. This could lead to local ...
CVE-2019-4749MEDIUM5.4IBM Maximo Asset Management 7.6 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrar...
CVE-2019-4644MEDIUM6.1IBM Maximo Asset Management 7.6 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrar...
CVE-2019-4446MEDIUM5.4IBM Maximo Asset Management 7.6 could allow an authenticated user perform actions they are not authorized to by modifyin...
CVE-2019-20785MEDIUM6.8An issue was discovered on LG mobile devices with Android OS 8.0 and 8.1 software for the DTAG carrier. RILD in the radi...
CVE-2019-20784MEDIUM5.5An issue was discovered on LG mobile devices with Android OS 7.0, 7.1, 7.2, 8.0, and 8.1 (MTK chipsets) software. Intera...
CVE-2019-20779MEDIUM5.5An issue was discovered on LG mobile devices with Android OS 7.0, 7.1, 7.2, 8.0, 8.1, and 9.0 software. A TrustZone trus...
CVE-2019-20776MEDIUM5.5An issue was discovered on LG mobile devices with Android OS 7.0, 7.1, 7.2, 8.0, and 8.1 software. A TZ trusted applicat...
CVE-2019-20775MEDIUM5.5An issue was discovered on LG mobile devices with Android OS 9.0 (Qualcomm SDM450, SDM845, SM6150, and SM8150 chipsets) ...
CVE-2019-20774MEDIUM5.5An issue was discovered on LG mobile devices with Android OS 7.0, 7.1, 7.2, 8.0, 8.1, and 9.0 software. A system service...
CVE-2019-12001MEDIUM6.4A remote session reuse vulnerability leading to access restriction bypass was discovered in HPE MSA 2040 SAN Storage; HP...
CVE-2019-20766MEDIUM6.8NETGEAR R7800 devices before 1.0.2.52 are affected by a stack-based buffer overflow by an authenticated user.
CVE-2019-20765MEDIUM6.8NETGEAR R7800 devices before 1.0.2.52 are affected by a stack-based buffer overflow by an authenticated user.
CVE-2019-20764MEDIUM6.8NETGEAR R7800 devices before 1.0.2.52 are affected by a stack-based buffer overflow by an authenticated user.
CVE-2019-20763MEDIUM6.8NETGEAR R7800 devices before 1.0.2.52 are affected by a stack-based buffer overflow by an authenticated user.

Check if your code is affected by 2019 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now