2019 CVE Vulnerabilities
17,623 CVEs published in 2019.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2019-12661 | MEDIUM | 6.7 | 0.4% | Sep 25, 2019 | A vulnerability in a Virtualization Manager (VMAN) related CLI command of Cisco IOS XE Software could allow an authentic... |
| CVE-2019-12660 | MEDIUM | 5.5 | 0.3% | Sep 25, 2019 | A vulnerability in the CLI of Cisco IOS XE Software could allow an authenticated, local attacker to write values to the ... |
| CVE-2019-12659 | HIGH | 7.5 | 1.8% | Sep 25, 2019 | A vulnerability in the HTTP server code of Cisco IOS XE Software could allow an unauthenticated, remote attacker to caus... |
| CVE-2019-12658 | HIGH | 7.5 | 2.0% | Sep 25, 2019 | A vulnerability in the filesystem resource management code of Cisco IOS XE Software could allow an unauthenticated, remo... |
| CVE-2019-12657 | HIGH | 7.5 | 2.0% | Sep 25, 2019 | A vulnerability in Unified Threat Defense (UTD) in Cisco IOS XE Software could allow an unauthenticated, remote attacker... |
| CVE-2019-12656 | HIGH | 7.5 | 1.8% | Sep 25, 2019 | A vulnerability in the IOx application environment of multiple Cisco platforms could allow an unauthenticated, remote at... |
| CVE-2019-12655 | HIGH | 7.5 | 2.0% | Sep 25, 2019 | A vulnerability in the FTP application layer gateway (ALG) functionality used by Network Address Translation (NAT), NAT ... |
| CVE-2019-12654 | HIGH | 7.5 | 2.0% | Sep 25, 2019 | A vulnerability in the common Session Initiation Protocol (SIP) library of Cisco IOS and IOS XE Software could allow an ... |
| CVE-2019-12653 | HIGH | 7.5 | 2.0% | Sep 25, 2019 | A vulnerability in the Raw Socket Transport feature of Cisco IOS XE Software could allow an unauthenticated, remote atta... |
| CVE-2019-12652 | HIGH | 7.5 | 2.7% | Sep 25, 2019 | A vulnerability in the ingress packet processing function of Cisco IOS Software for Cisco Catalyst 4000 Series Switches ... |
| CVE-2019-6656 | HIGH | 7.5 | 1.4% | Sep 25, 2019 | BIG-IP APM Edge Client before version 7.1.8 (7180.2019.508.705) logs the full apm session ID in the log files. Vulnerabl... |
| CVE-2019-4571 | MEDIUM | 5.4 | 0.7% | Sep 25, 2019 | IBM Content Navigator 3.0CD is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary Ja... |
| CVE-2019-16889 | HIGH | 7.5 | 5.1% | Sep 25, 2019 | Ubiquiti EdgeMAX devices before 2.0.3 allow remote attackers to cause a denial of service (disk consumption) because *.c... |
| CVE-2019-15941 | CRITICAL | 9.8 | 2.2% | Sep 25, 2019 | OpenID Connect Issuer in LemonLDAP::NG 2.x through 2.0.5 may allow an attacker to bypass access control rules via a craf... |
| CVE-2019-14666 | HIGH | 8.8 | 2.2% | Sep 25, 2019 | GLPI through 9.4.3 is prone to account takeover by abusing the ajax/autocompletion.php autocompletion feature. The lack ... |
| CVE-2019-12651 | HIGH | 8.8 | 2.5% | Sep 25, 2019 | Multiple vulnerabilities in the web-based user interface (Web UI) of Cisco IOS XE Software could allow an authenticated,... |
| CVE-2019-12650 | HIGH | 8.8 | 28.9% | Sep 25, 2019 | Multiple vulnerabilities in the web-based user interface (Web UI) of Cisco IOS XE Software could allow an authenticated,... |
| CVE-2019-12649 | MEDIUM | 6.7 | 0.2% | Sep 25, 2019 | A vulnerability in the Image Verification feature of Cisco IOS XE Software could allow an authenticated, local attacker ... |
| CVE-2019-12648 | HIGH | 8.8 | 2.4% | Sep 25, 2019 | A vulnerability in the IOx application environment for Cisco IOS Software could allow an authenticated, remote attacker ... |
| CVE-2019-12647 | HIGH | 7.5 | 2.0% | Sep 25, 2019 | A vulnerability in the Ident protocol handler of Cisco IOS and IOS XE Software could allow an unauthenticated, remote at... |
| CVE-2019-12646 | HIGH | 7.5 | 2.0% | Sep 25, 2019 | A vulnerability in the Network Address Translation (NAT) Session Initiation Protocol (SIP) Application Layer Gateway (AL... |
| CVE-2019-6655 | MEDIUM | 5.3 | 1.1% | Sep 25, 2019 | On versions 13.0.0-13.1.0.1, 12.1.0-12.1.4.1, 11.6.1-11.6.4, and 11.5.1-11.5.9, BIG-IP platforms where AVR, ASM, APM, PE... |
| CVE-2019-6654 | MEDIUM | 4.3 | 0.5% | Sep 25, 2019 | On versions 14.0.0-14.1.2, 13.0.0-13.1.3, 12.1.0-12.1.5, and 11.5.1-11.6.5, the BIG-IP system fails to perform Martian A... |
| CVE-2019-15069 | CRITICAL | 9.8 | 1.5% | Sep 25, 2019 | An unsafe authentication interface was discovered in Smart Battery A4, a multifunctional portable charger, firmware vers... |
| CVE-2019-15068 | CRITICAL | 9.8 | 1.9% | Sep 25, 2019 | A broken access control vulnerability in Smart Battery A4, a multifunctional portable charger, firmware version ?<= r1.7... |
Check if your code is affected by 2019 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now