2019 CVE Vulnerabilities
17,623 CVEs published in 2019.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2019-16663 | HIGH | 8.8 | 84.7% | Oct 28, 2019 | An issue was discovered in rConfig 3.9.2. An attacker can directly execute system commands by sending a GET request to s... |
| CVE-2019-16662 | CRITICAL | 9.8 | 97.7% | Oct 28, 2019 | An issue was discovered in rConfig 3.9.2. An attacker can directly execute system commands by sending a GET request to a... |
| CVE-2019-18221 | MEDIUM | 6.1 | 0.7% | Oct 25, 2019 | CoreHR Core Portal before 27.0.7 allows stored XSS. |
| CVE-2019-5508 | HIGH | 7.5 | 1.3% | Oct 25, 2019 | Clustered Data ONTAP versions 9.2 through 9.4 are susceptible to a vulnerability which allows an attacker to use l2ping ... |
| CVE-2019-17145 | HIGH | 8.8 | 5.5% | Oct 25, 2019 | This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit PhantomPDF 9.6.0... |
| CVE-2019-17144 | HIGH | 8.8 | 5.5% | Oct 25, 2019 | This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit PhantomPDF 9.6.0... |
| CVE-2019-17143 | MEDIUM | 4.3 | 3.9% | Oct 25, 2019 | This vulnerability allows remote attackers to disclose sensitive information on affected installations of Foxit PhantomP... |
| CVE-2019-17142 | HIGH | 8.8 | 6.3% | Oct 25, 2019 | This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit PhantomPDF 9.6.0... |
| CVE-2019-17141 | HIGH | 8.8 | 5.2% | Oct 25, 2019 | This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit PhantomPDF 9.6.0... |
| CVE-2019-17140 | HIGH | 8.8 | 5.2% | Oct 25, 2019 | This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit PhantomPDF 9.6.0... |
| CVE-2019-17139 | HIGH | 8.8 | 5.8% | Oct 25, 2019 | This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit PhantomPDF 9.5.0... |
| CVE-2019-17138 | MEDIUM | 4.3 | 8.2% | Oct 25, 2019 | This vulnerability allows remote attackers to disclose sensitive information on affected installations of Foxit Studio P... |
| CVE-2019-5129 | CRITICAL | 9.8 | 33.2% | Oct 25, 2019 | A command injection have been found in YouPHPTube Encoder. A successful attack could allow an attacker to compromise the... |
| CVE-2019-5128 | CRITICAL | 9.8 | 25.7% | Oct 25, 2019 | A command injection have been found in YouPHPTube Encoder. A successful attack could allow an attacker to compromise the... |
| CVE-2019-5127 | CRITICAL | 9.8 | 45.3% | Oct 25, 2019 | A command injection have been found in YouPHPTube Encoder. A successful attack could allow an attacker to compromise the... |
| CVE-2019-5123 | HIGH | 8.8 | 1.0% | Oct 25, 2019 | Specially crafted web requests can cause SQL injections in YouPHPTube 7.6. An attacker can send a web request with Param... |
| CVE-2019-5122 | HIGH | 8.8 | 0.8% | Oct 25, 2019 | SQL injection vulnerabilities exists in the authenticated part of YouPHPTube 7.6. Specially crafted web requests can cau... |
| CVE-2019-5121 | HIGH | 8.8 | 1.1% | Oct 25, 2019 | SQL injection vulnerabilities exists in the authenticated part of YouPHPTube 7.6. Specially crafted web requests can cau... |
| CVE-2019-5120 | HIGH | 8.8 | 1.1% | Oct 25, 2019 | An exploitable SQL injection vulnerability exists in the authenticated part of YouPHPTube 7.6. Specially crafted web req... |
| CVE-2019-5119 | HIGH | 8.8 | 1.0% | Oct 25, 2019 | An exploitable SQL injection vulnerability exist in the authenticated part of YouPHPTube 7.6. Specially crafted web requ... |
| CVE-2019-5117 | HIGH | 8.8 | 1.1% | Oct 25, 2019 | Exploitable SQL injection vulnerabilities exists in the authenticated portion of YouPHPTube 7.6. Specially crafted web r... |
| CVE-2019-5116 | HIGH | 8.8 | 1.1% | Oct 25, 2019 | An exploitable SQL injection vulnerability exists in the authenticated part of YouPHPTube 7.6. Specially crafted web req... |
| CVE-2019-5114 | CRITICAL | 9.9 | 1.4% | Oct 25, 2019 | An exploitable SQL injection vulnerability exists in the authenticated portion of YouPHPTube 7.6. Specially crafted web ... |
| CVE-2019-13553 | CRITICAL | 9.8 | 1.8% | Oct 25, 2019 | Rittal Chiller SK 3232-Series web interface as built upon Carel pCOWeb firmware A1.5.3 – B1.2.4. The authentication mech... |
| CVE-2019-13549 | HIGH | 7.5 | 1.0% | Oct 25, 2019 | Rittal Chiller SK 3232-Series web interface as built upon Carel pCOWeb firmware A1.5.3 – B1.2.4. The authentication mech... |
Check if your code is affected by 2019 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now