2019 CVE Vulnerabilities
17,623 CVEs published in 2019.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2019-16905 | HIGH | 7.8 | 2.2% | Oct 9, 2019 | OpenSSH 7.7 through 7.9 and 8.x before 8.1, when compiled with an experimental key type, has a pre-authentication intege... |
| CVE-2019-15715 | HIGH | 7.2 | 30.0% | Oct 9, 2019 | MantisBT before 1.3.20 and 2.22.1 allows Post Authentication Command Injection, leading to Remote Code Execution. |
| CVE-2019-0075 | HIGH | 7.5 | 1.3% | Oct 9, 2019 | A vulnerability in the srxpfe process on Protocol Independent Multicast (PIM) enabled SRX series devices may lead to cra... |
| CVE-2019-0074 | MEDIUM | 5.5 | 0.4% | Oct 9, 2019 | A path traversal vulnerability in NFX150 Series and QFX10K Series, EX9200 Series, MX Series and PTX Series devices with ... |
| CVE-2019-0073 | HIGH | 7.1 | 0.3% | Oct 9, 2019 | The PKI keys exported using the command "run request security pki key-pair export" on Junos OS may have insecure file pe... |
| CVE-2019-0072 | MEDIUM | 5.5 | 0.2% | Oct 9, 2019 | An Unprotected Storage of Credentials vulnerability in the identity and access management certificate generation procedu... |
| CVE-2019-0071 | HIGH | 7.8 | 0.2% | Oct 9, 2019 | Veriexec is a kernel-based file integrity subsystem in Junos OS that ensures only authorized binaries are able to be exe... |
| CVE-2019-0070 | HIGH | 8.8 | 0.4% | Oct 9, 2019 | An Improper Input Validation weakness allows a malicious local attacker to elevate their permissions to take control of ... |
| CVE-2019-0069 | MEDIUM | 5.5 | 0.2% | Oct 9, 2019 | On EX4600, QFX5100 Series, NFX Series, QFX10K Series, QFX5110, QFX5200 Series, QFX5110, QFX5200, QFX10K Series, vSRX, SR... |
| CVE-2019-0068 | HIGH | 7.5 | 1.3% | Oct 9, 2019 | The SRX flowd process, responsible for packet forwarding, may crash and restart when processing specific multicast packe... |
| CVE-2019-0067 | MEDIUM | 6.5 | 0.5% | Oct 9, 2019 | Receipt of a specific link-local IPv6 packet destined to the RE may cause the system to crash and restart (vmcore). By c... |
| CVE-2019-0066 | HIGH | 7.5 | 1.4% | Oct 9, 2019 | An unexpected status return value weakness in the Next-Generation Multicast VPN (NG-mVPN) service of Juniper Networks Ju... |
| CVE-2019-0065 | HIGH | 7.5 | 1.3% | Oct 9, 2019 | On MX Series, when the SIP ALG is enabled, receipt of a certain malformed SIP packet may crash the MS-PIC component on M... |
| CVE-2019-0064 | HIGH | 7.5 | 1.3% | Oct 9, 2019 | On SRX5000 Series devices, if 'set security zones security-zone <zone> tcp-rst' is configured, the flowd process may cra... |
| CVE-2019-0063 | HIGH | 7.5 | 1.3% | Oct 9, 2019 | When an MX Series Broadband Remote Access Server (BRAS) is configured as a Broadband Network Gateway (BNG) with DHCPv6 e... |
| CVE-2019-0062 | HIGH | 8.8 | 1.1% | Oct 9, 2019 | A session fixation vulnerability in J-Web on Junos OS may allow an attacker to use social engineering techniques to fix ... |
| CVE-2019-0061 | HIGH | 7.8 | 0.4% | Oct 9, 2019 | The management daemon (MGD) is responsible for all configuration and management operations in Junos OS. The Junos CLI co... |
| CVE-2019-0060 | HIGH | 7.5 | 1.3% | Oct 9, 2019 | The flowd process, responsible for forwarding traffic in SRX Series services gateways, may crash and restart when proces... |
| CVE-2019-0059 | HIGH | 7.5 | 1.3% | Oct 9, 2019 | A memory leak vulnerability in the of Juniper Networks Junos OS allows an attacker to cause a Denial of Service (DoS) to... |
| CVE-2019-0058 | HIGH | 7.8 | 0.3% | Oct 9, 2019 | A vulnerability in the Veriexec subsystem of Juniper Networks Junos OS allowing an attacker to fully compromise the host... |
| CVE-2019-0057 | HIGH | 7.8 | 0.4% | Oct 9, 2019 | An improper authorization weakness in Juniper Networks Junos OS allows a local authenticated attacker to bypass regular ... |
| CVE-2019-0056 | HIGH | 7.5 | 1.3% | Oct 9, 2019 | This issue only affects devices with three (3) or more MPC10's installed in a single chassis with OSPF enabled and confi... |
| CVE-2019-0055 | HIGH | 7.5 | 1.3% | Oct 9, 2019 | A vulnerability in the SIP ALG packet processing service of Juniper Networks Junos OS allows an attacker to cause a Deni... |
| CVE-2019-0054 | HIGH | 7.4 | 0.6% | Oct 9, 2019 | An Improper Certificate Validation weakness in the SRX Series Application Identification (app-id) signature update clien... |
| CVE-2019-0051 | HIGH | 7.5 | 1.1% | Oct 9, 2019 | SSL-Proxy feature on SRX devices fails to handle a hardware resource limitation which can be exploited by remote SSL/TLS... |
Check if your code is affected by 2019 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now