2019 CVE Vulnerabilities
17,623 CVEs published in 2019.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2019-12674 | HIGH | 8.2 | 0.4% | Oct 2, 2019 | Multiple vulnerabilities in the multi-instance feature of Cisco Firepower Threat Defense (FTD) Software could allow an a... |
| CVE-2019-12673 | HIGH | 7.5 | 1.8% | Oct 2, 2019 | A vulnerability in the FTP inspection engine of Cisco Adaptive Security (ASA) Software and Cisco Firepower Threat Defens... |
| CVE-2019-12631 | MEDIUM | 6.1 | 1.1% | Oct 2, 2019 | A vulnerability in the web-based guest portal of Cisco Identity Services Engine (ISE) could allow an unauthenticated, re... |
| CVE-2019-12630 | CRITICAL | 9.8 | 65.8% | Oct 2, 2019 | A vulnerability in the Java deserialization function used by Cisco Security Manager could allow an unauthenticated, remo... |
| CVE-2019-12157 | CRITICAL | 9.8 | 1.8% | Oct 2, 2019 | In JetBrains UpSource versions before 2018.2 build 1293, there is credential disclosure via RPC commands. |
| CVE-2019-12156 | MEDIUM | 5.3 | 0.9% | Oct 2, 2019 | Server metadata could be exposed because one of the error messages reflected the whole response back to the client in Je... |
| CVE-2019-11929 | CRITICAL | 9.8 | 4.0% | Oct 2, 2019 | Insufficient boundary checks when formatting numbers in number_format allows read/write access to out-of-bounds memory, ... |
| CVE-2019-10212 | CRITICAL | 9.8 | 1.9% | Oct 2, 2019 | A flaw was found in, all under 2.0.20, in the Undertow DEBUG log for io.undertow.request.security. If enabled, an attack... |
| CVE-2019-8462 | HIGH | 7.5 | 1.3% | Oct 2, 2019 | In a rare scenario, Check Point R80.30 Security Gateway before JHF Take 50 managed by Check Point R80.30 Management cras... |
| CVE-2019-13658 | CRITICAL | 9.8 | 3.4% | Oct 2, 2019 | CA Network Flow Analysis 9.x and 10.0.x have a default credential vulnerability that can allow a remote attacker to exec... |
| CVE-2019-5031 | HIGH | 8.8 | 6.0% | Oct 2, 2019 | An exploitable memory corruption vulnerability exists in the JavaScript engine of Foxit Software's Foxit PDF Reader, ver... |
| CVE-2019-16116 | MEDIUM | 4.3 | 3.7% | Oct 2, 2019 | EnterpriseDT CompleteFTP Server prior to version 12.1.3 is vulnerable to information exposure in the Bootstrap.log file.... |
| CVE-2019-13343 | HIGH | 7.5 | 2.2% | Oct 2, 2019 | Butor Portal before 1.0.27 is affected by a Path Traversal vulnerability leading to a pre-authentication arbitrary file ... |
| CVE-2019-4549 | MEDIUM | 5.3 | 1.3% | Oct 2, 2019 | IBM Security Directory Server 6.4.0 discloses sensitive information to unauthorized users. The information can be used t... |
| CVE-2019-4542 | MEDIUM | 6.1 | 0.9% | Oct 2, 2019 | IBM Security Directory Server 6.4.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbi... |
| CVE-2019-4539 | HIGH | 7.1 | 1.2% | Oct 2, 2019 | IBM Security Directory Server 6.4.0 does not properly neutralize special elements that are used in XML, allowing attacke... |
| CVE-2019-4538 | HIGH | 8.2 | 1.3% | Oct 2, 2019 | IBM Security Directory Server 6.4.0 could allow a remote attacker to conduct phishing attacks, using an open redirect at... |
| CVE-2019-4520 | HIGH | 7.5 | 2.2% | Oct 2, 2019 | IBM Security Directory Server 6.4.0 uses an inadequate account lockout setting that could allow a remote attacker to bru... |
| CVE-2019-13025 | CRITICAL | 9.8 | 3.3% | Oct 2, 2019 | Compal CH7465LG CH7465LG-NCIP-6.12.18.24-5p8-NOSH devices have Incorrect Access Control because of Improper Input Valida... |
| CVE-2019-17091 | MEDIUM | 6.1 | 2.5% | Oct 2, 2019 | faces/context/PartialViewContextImpl.java in Eclipse Mojarra, as used in Mojarra for Eclipse EE4J before 2.3.10 and Moja... |
| CVE-2019-17080 | HIGH | 7.8 | 8.2% | Oct 2, 2019 | mintinstall (aka Software Manager) 7.9.9 for Linux Mint allows code execution if a REVIEWS_CACHE file is controlled by a... |
| CVE-2019-14454 | CRITICAL | 9.8 | 1.5% | Oct 2, 2019 | SuiteCRM 7.11.x and 7.10.x before 7.11.8 and 7.10.20 is vulnerable to vertical privilege escalation. |
| CVE-2019-13335 | CRITICAL | 9.8 | 1.3% | Oct 2, 2019 | SalesAgility SuiteCRM 7.10.x 7.10.19 and 7.11.x before and 7.11.7 has SSRF. |
| CVE-2019-17075 | HIGH | 7.5 | 6.2% | Oct 1, 2019 | An issue was discovered in write_tpt_entry in drivers/infiniband/hw/cxgb4/mem.c in the Linux kernel through 5.3.2. The c... |
| CVE-2019-8292 | MEDIUM | 5.3 | 1.9% | Oct 1, 2019 | Online Store System v1.0 delete_product.php doesn't check to see if a user authtenticated or has administrative rights a... |
Check if your code is affected by 2019 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now