2019 CVE Vulnerabilities

17,621 CVEs published in 2019.

CVE IDSeverityCVSSDescription
CVE-2019-15588HIGH7.2There is an OS Command Injection in Nexus Repository Manager <= 2.14.14 (bypass CVE-2019-5475) that could allow an attac...
CVE-2019-18636MEDIUM5.4A cross-site scripting (XSS) vulnerability in Jitbit .NET Forum (aka ASP.NET forum) 8.3.8 allows remote attackers to inj...
CVE-2019-16909MEDIUM4.3An issue was discovered in the Infosysta "In-App & Desktop Notifications" app before 1.6.14_J8 for Jira. It is possible ...
CVE-2019-16908MEDIUM5.3An issue was discovered in the Infosysta "In-App & Desktop Notifications" app before 1.6.14_J8 for Jira. It is possible ...
CVE-2019-18230HIGH7.5Honeywell equIP and Performance series IP cameras, multiple versions, A vulnerability exists where the affected product ...
CVE-2019-18229MEDIUM6.5Advantech WISE-PaaS/RMM, Versions 3.3.29 and prior. Lack of sanitization of user-supplied input cause SQL injection vuln...
CVE-2019-18228HIGH7.5Honeywell equIP series IP cameras Multiple equIP Series Cameras, A vulnerability exists in the affected products where a...
CVE-2019-18227HIGH7.5Advantech WISE-PaaS/RMM, Versions 3.3.29 and prior. XXE vulnerabilities exist that may allow disclosure of sensitive dat...
CVE-2019-18226CRITICAL9.8Honeywell equIP series and Performance series IP cameras and recorders, A vulnerability exists in the affected products ...
CVE-2019-16907MEDIUM5.3An issue was discovered in the Infosysta "In-App & Desktop Notifications" app 1.6.13_J8 for Jira. It is possible to obta...
CVE-2019-16906HIGH7.5An issue was discovered in the Infosysta "In-App & Desktop Notifications" app 1.6.13_J8 for Jira. By using plugins/servl...
CVE-2019-16675HIGH7.8An issue was discovered in PHOENIX CONTACT PC Worx through 1.86, PC Worx Express through 1.86, and Config+ through 1.86....
CVE-2019-5043HIGH7.5An exploitable denial-of-service vulnerability exists in the Weave daemon of the Nest Cam IQ Indoor, version 4620002. A ...
CVE-2019-5030HIGH8.8A buffer overflow vulnerability exists in the PowerPoint document conversion function of Rainbow PDF Office Server Docum...
CVE-2019-5023MEDIUM5.9An exploitable vulnerability exists in the grsecurity PaX patch for the function read_kmem, in PaX from version pax-linu...
CVE-2019-5010HIGH7.5An exploitable denial-of-service vulnerability exists in the X509 certificate parser of Python.org Python 2.7.11 / 3.6.6...
CVE-2019-16295MEDIUM4.6Stored XSS in filemanager2.php in CentOS-WebPanel.com (aka CWP) CentOS Web Panel 0.9.8.885 exists via the cmd_arg parame...
CVE-2019-13551CRITICAL9.8Advantech WISE-PaaS/RMM, Versions 3.3.29 and prior. Path traversal vulnerabilities are caused by a lack of proper valida...
CVE-2019-13547CRITICAL9.8Advantech WISE-PaaS/RMM, Versions 3.3.29 and prior. There is an unsecured function that allows anyone who can access the...
CVE-2019-13508CRITICAL9.8FreeTDS through 1.1.11 has a Buffer Overflow.
CVE-2019-5151CRITICAL9.8An exploitable SQL injection vulnerability exist in YouPHPTube 7.7. A specially crafted unauthenticated HTTP request can...
CVE-2019-5150HIGH8.1An exploitable SQL injection vulnerability exist in YouPHPTube 7.7. When the "VideoTags" plugin is enabled, a specially ...
CVE-2019-5095MEDIUM4.3An issue summary information disclosure vulnerability exists in Atlassian Jira Tempo plugin, version 4.10.0. Authenticat...
CVE-2019-5049CRITICAL10An exploitable memory corruption vulnerability exists in AMD ATIDXX64.DLL driver, versions 25.20.15031.5004 and 25.20.15...
CVE-2019-18396HIGH7.2An issue was discovered in certain Oi third-party firmware that may be installed on Technicolor TD5130v2 devices. A Comm...

Check if your code is affected by 2019 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now