2019 CVE Vulnerabilities

17,623 CVEs published in 2019.

CVE IDSeverityCVSSDescription
CVE-2019-17609MEDIUM6.1HongCMS 3.0.0 has XSS via the install/index.php dbusername parameter.
CVE-2019-17608MEDIUM6.1HongCMS 3.0.0 has XSS via the install/index.php dbname parameter.
CVE-2019-17607MEDIUM6.1HongCMS 3.0.0 has XSS via the install/index.php servername parameter.
CVE-2019-17665HIGH7.8NSA Ghidra before 9.0.2 is vulnerable to DLL hijacking because it loads jansi.dll from the current working directory.
CVE-2019-17664HIGH7.8NSA Ghidra through 9.0.4 uses a potentially untrusted search path. When executing Ghidra from a given path, the Java pro...
CVE-2019-13116CRITICAL9.8The MuleSoft Mule Community Edition runtime engine before 3.8 allows remote attackers to execute arbitrary code because ...
CVE-2019-17512CRITICAL9.1There are some web interfaces without authentication requirements on D-Link DIR-412 A1-1.14WW routers. An attacker can c...
CVE-2019-17436HIGH7.1A Local Privilege Escalation vulnerability exists in GlobalProtect Agent for Linux and Mac OS X version 5.0.4 and earlie...
CVE-2019-17435MEDIUM5.5A Local Privilege Escalation vulnerability exists in the GlobalProtect Agent for Windows 5.0.3 and earlier, and GlobalPr...
CVE-2019-16700CRITICAL9.8The slub_events (aka SLUB: Event Registration) extension through 3.0.2 for TYPO3 allows uploading of arbitrary files to ...
CVE-2019-16699CRITICAL9.8The sr_freecap (aka freeCap CAPTCHA) extension 2.4.5 and below and 2.5.2 and below for TYPO3 fails to sanitize user inpu...
CVE-2019-16698MEDIUM4.3The direct_mail (aka Direct Mail) extension through 5.2.2 for TYPO3 has a missing access check in the backend module, al...
CVE-2019-16682HIGH7.3The url_redirect (aka URL redirect) extension through 1.2.1 for TYPO3 fails to properly sanitize user input and is susce...
CVE-2019-15962MEDIUM4.4A vulnerability in the CLI of Cisco TelePresence Collaboration Endpoint (CE) Software could allow an authenticated, loca...
CVE-2019-15282MEDIUM5.3A vulnerability in the web-based management interface of Cisco Identity Services Engine (ISE) Software could allow an un...
CVE-2019-15281MEDIUM4.8A vulnerability in the web-based management interface of Cisco Identity Services Engine (ISE) Software could allow an au...
CVE-2019-15280MEDIUM4.8A vulnerability in the web-based management interface of Cisco Firepower Management Center (FMC) Software could allow an...
CVE-2019-15277MEDIUM6.7A vulnerability in the CLI of Cisco TelePresence Collaboration Endpoint (CE) Software could allow an authenticated, loca...
CVE-2019-15275MEDIUM6.7A vulnerability in the CLI of Cisco TelePresence Collaboration Endpoint (CE) Software could allow an authenticated, loca...
CVE-2019-15274MEDIUM6.7A vulnerability in the CLI of Cisco TelePresence Collaboration Endpoint (CE) Software could allow an authenticated, loca...
CVE-2019-15273MEDIUM4.4Multiple vulnerabilities in the CLI of Cisco TelePresence Collaboration Endpoint (CE) Software could allow an authentica...
CVE-2019-15270MEDIUM5.4A vulnerability in the web-based management interface of Cisco Firepower Management Center (FMC) could allow an unauthen...
CVE-2019-15269MEDIUM4.8Multiple vulnerabilities in the web-based management interface of Cisco Firepower Management Center (FMC) could allow an...
CVE-2019-15268MEDIUM4.8Multiple vulnerabilities in the web-based management interface of Cisco Firepower Management Center (FMC) could allow an...
CVE-2019-15266MEDIUM4.4A vulnerability in the CLI of Cisco Wireless LAN Controller (WLC) Software could allow an authenticated, local attacker ...

Check if your code is affected by 2019 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now