2019 CVE Vulnerabilities
17,623 CVEs published in 2019.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2019-8162 | HIGH | 8.1 | 2.3% | Oct 17, 2019 | Adobe Acrobat and Reader versions , 2019.012.20040 and earlier, 2017.011.30148 and earlier, 2017.011.30148 and earlier, ... |
| CVE-2019-8161 | CRITICAL | 9.8 | 4.4% | Oct 17, 2019 | Adobe Acrobat and Reader versions , 2019.012.20040 and earlier, 2017.011.30148 and earlier, 2017.011.30148 and earlier, ... |
| CVE-2019-8160 | MEDIUM | 6.1 | 1.2% | Oct 17, 2019 | Adobe Acrobat and Reader versions , 2019.012.20040 and earlier, 2017.011.30148 and earlier, 2017.011.30148 and earlier, ... |
| CVE-2019-8064 | MEDIUM | 4.3 | 2.0% | Oct 17, 2019 | Adobe Acrobat and Reader versions , 2019.012.20040 and earlier, 2017.011.30148 and earlier, 2017.011.30148 and earlier, ... |
| CVE-2019-6476 | HIGH | 7.5 | 2.9% | Oct 17, 2019 | A defect in code added to support QNAME minimization can cause named to exit with an assertion failure if a forwarder re... |
| CVE-2019-6475 | HIGH | 7.5 | 1.3% | Oct 17, 2019 | Mirror zones are a BIND feature allowing recursive servers to pre-cache zone data provided by other servers. A mirror zo... |
| CVE-2019-18192 | HIGH | 7.8 | 0.3% | Oct 17, 2019 | GNU Guix 1.0.1 allows local users to gain access to an arbitrary user's account because the parent directory of the user... |
| CVE-2019-15066 | CRITICAL | 9.8 | 1.6% | Oct 17, 2019 | An “invalid command” handler issue was discovered in HiNet GPON firmware < I040GWR190731. It allows an attacker to execu... |
| CVE-2019-15065 | HIGH | 7.5 | 1.2% | Oct 17, 2019 | A service which is hosted on port 6998 in HiNet GPON firmware < I040GWR190731 allows an attacker to execute a specific c... |
| CVE-2019-15064 | CRITICAL | 9.8 | 1.4% | Oct 17, 2019 | HiNet GPON firmware version < I040GWR190731 allows an attacker login to device without any authentication. |
| CVE-2019-13412 | HIGH | 7.5 | 1.2% | Oct 17, 2019 | A service which is hosted on port 3097 in HiNet GPON firmware < I040GWR190731 allows an attacker to execute a specific c... |
| CVE-2019-13410 | HIGH | 7.5 | 1.5% | Oct 17, 2019 | TOPMeeting before version 8.8 (2019/08/19) shows attendees account and password in front end page that allows an attacke... |
| CVE-2019-13409 | CRITICAL | 9.8 | 1.2% | Oct 17, 2019 | A SQL injection vulnerability was discovered in TOPMeeting before version 8.8 (2019/08/19). An attacker can use a union ... |
| CVE-2019-8071 | CRITICAL | 9.8 | 3.3% | Oct 17, 2019 | Adobe Download Manager versions 2.0.0.363 have an insecure file permissions vulnerability. Successful exploitation could... |
| CVE-2019-17120 | MEDIUM | 6.1 | 50.0% | Oct 17, 2019 | A stored and reflected cross-site scripting (XSS) vulnerability in WiKID 2FA Enterprise Server through 4.2.0-b2047 allow... |
| CVE-2019-17119 | HIGH | 8.8 | 1.7% | Oct 17, 2019 | Multiple SQL injection vulnerabilities in Logs.jsp in WiKID 2FA Enterprise Server through 4.2.0-b2053 allow authenticate... |
| CVE-2019-15627 | HIGH | 7.1 | 1.3% | Oct 17, 2019 | Versions 10.0, 11.0 and 12.0 of the Trend Micro Deep Security Agent are vulnerable to an arbitrary file delete attack, w... |
| CVE-2019-15626 | HIGH | 7.5 | 1.8% | Oct 17, 2019 | The Deep Security Manager application (Versions 10.0, 11.0 and 12.0), when configured in a certain way, may transmit ini... |
| CVE-2019-13657 | HIGH | 8.8 | 2.5% | Oct 17, 2019 | CA Performance Management 3.5.x, 3.6.x before 3.6.9, and 3.7.x before 3.7.4 have a default credential vulnerability that... |
| CVE-2019-12611 | MEDIUM | 4.4 | 0.3% | Oct 17, 2019 | An issue was discovered in Bitdefender BOX firmware versions before 2.1.37.37-34 that affects the general reliability of... |
| CVE-2019-10752 | CRITICAL | 9.8 | 1.5% | Oct 17, 2019 | Sequelize, all versions prior to version 4.44.3 and 5.15.1, is vulnerable to SQL Injection due to sequelize.json() helpe... |
| CVE-2019-17631 | CRITICAL | 9.1 | 2.1% | Oct 17, 2019 | From Eclipse OpenJ9 0.15 to 0.16, access to diagnostic operations such as causing a GC or creating a diagnostic file are... |
| CVE-2019-17118 | HIGH | 8.8 | 0.9% | Oct 17, 2019 | A CSRF issue in WiKID 2FA Enterprise Server through 4.2.0-b2053 allows a remote attacker to trick an authenticated user ... |
| CVE-2019-17117 | HIGH | 8.8 | 1.7% | Oct 17, 2019 | A SQL injection vulnerability in processPref.jsp in WiKID 2FA Enterprise Server through 4.2.0-b2053 allows an authentica... |
| CVE-2019-17116 | MEDIUM | 6.1 | 1.7% | Oct 17, 2019 | A stored and reflected cross-site scripting (XSS) vulnerability in WiKID 2FA Enterprise Server through 4.2.0-b2047 allow... |
Check if your code is affected by 2019 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now