2019 CVE Vulnerabilities
17,619 CVEs published in 2019.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2019-18200 | CRITICAL | 9.8 | 2.8% | Oct 24, 2019 | An issue was discovered on Fujitsu Wireless Keyboard Set LX390 GK381 devices. Because of the lack of proper encryption o... |
| CVE-2019-13653 | CRITICAL | 9.8 | 2.1% | Oct 24, 2019 | TP-Link M7350 devices through 1.0.16 Build 181220 Rel.1116n allow triggerPort OS Command Injection (issue 5 of 5). |
| CVE-2019-13652 | CRITICAL | 9.8 | 2.8% | Oct 24, 2019 | TP-Link M7350 devices through 1.0.16 Build 181220 Rel.1116n allow serviceName OS Command Injection (issue 4 of 5). |
| CVE-2019-13651 | CRITICAL | 9.8 | 3.0% | Oct 24, 2019 | TP-Link M7350 devices through 1.0.16 Build 181220 Rel.1116n allow portMappingProtocol OS Command Injection (issue 3 of 5... |
| CVE-2019-13650 | CRITICAL | 9.8 | 2.8% | Oct 24, 2019 | TP-Link M7350 devices through 1.0.16 Build 181220 Rel.1116n allow internalPort OS Command Injection (issue 2 of 5). |
| CVE-2019-13649 | CRITICAL | 9.8 | 2.8% | Oct 24, 2019 | TP-Link M7350 devices through 1.0.16 Build 181220 Rel.1116n allow externalPort OS Command Injection (issue 1 of 5). |
| CVE-2019-12017 | CRITICAL | 9.8 | 2.9% | Oct 24, 2019 | A remote code execution vulnerability exists in MapR CLDB code, specifically in the JSON framework that is used in the C... |
| CVE-2019-18394 | CRITICAL | 9.8 | 32.3% | Oct 24, 2019 | A Server Side Request Forgery (SSRF) vulnerability in FaviconServlet.java in Ignite Realtime Openfire through 4.4.2 allo... |
| CVE-2019-18387 | CRITICAL | 9.8 | 1.4% | Oct 23, 2019 | Sourcecodester Hotel and Lodge Management System 1.0 is vulnerable to unauthenticated SQL injection and can allow remote... |
| CVE-2019-8237 | CRITICAL | 9.8 | 2.8% | Oct 23, 2019 | Adobe Acrobat and Reader versions 2019.012.20035 and earlier, 2019.012.20035 and earlier, 2017.011.30142 and earlier, 20... |
| CVE-2019-8236 | CRITICAL | 9.8 | 3.4% | Oct 23, 2019 | Creative Cloud Desktop Application version 4.6.1 and earlier versions have Security Bypass vulnerability. Successful exp... |
| CVE-2019-18370 | CRITICAL | 9.8 | 40.3% | Oct 23, 2019 | An issue was discovered on Xiaomi Mi WiFi R3G devices before 2.28.23-stable. The backup file is in tar.gz format. After ... |
| CVE-2019-18355 | CRITICAL | 9.8 | 1.5% | Oct 23, 2019 | An SSRF issue was discovered in the legacy Web launcher in Thycotic Secret Server before 10.7. |
| CVE-2019-11933 | CRITICAL | 9.8 | 4.1% | Oct 23, 2019 | A heap buffer overflow bug in libpl_droidsonroids_gif before 1.2.19, as used in WhatsApp for Android before version 2.19... |
| CVE-2019-18344 | CRITICAL | 9.8 | 1.4% | Oct 23, 2019 | Sourcecodester Online Grading System 1.0 is vulnerable to unauthenticated SQL injection and can allow remote attackers t... |
| CVE-2019-12148 | CRITICAL | 9.8 | 3.5% | Oct 22, 2019 | The Sangoma Session Border Controller (SBC) 2.3.23-119 GA web interface is vulnerable to an authentication bypass via an... |
| CVE-2019-12147 | CRITICAL | 9.8 | 2.6% | Oct 22, 2019 | The Sangoma Session Border Controller (SBC) 2.3.23-119 GA web interface is vulnerable to Argument Injection via special ... |
| CVE-2019-18225 | CRITICAL | 9.8 | 1.5% | Oct 21, 2019 | An issue was discovered in Citrix Application Delivery Controller (ADC) and Gateway before 10.5 build 70.8, 11.x before ... |
| CVE-2019-18224 | CRITICAL | 9.8 | 3.7% | Oct 21, 2019 | idn2_to_ascii_4i in lib/lookup.c in GNU libidn2 before 2.1.1 has a heap-based buffer overflow via a long domain string. |
| CVE-2019-17526 | CRITICAL | 9.8 | 3.0% | Oct 18, 2019 | An issue was discovered in SageMath Sage Cell Server through 2019-10-05. Python Code Injection can occur in the context ... |
| CVE-2019-17393 | CRITICAL | 9.8 | 1.8% | Oct 18, 2019 | The Customer's Tomedo Server in Version 1.7.3 communicates to the Vendor Tomedo Server via HTTP (in cleartext) that can ... |
| CVE-2019-15900 | CRITICAL | 9.8 | 2.1% | Oct 18, 2019 | An issue was discovered in slicer69 doas before 6.2 on certain platforms other than OpenBSD. On platforms without strton... |
| CVE-2019-8221 | CRITICAL | 9.8 | 4.1% | Oct 17, 2019 | Adobe Acrobat and Reader versions , 2019.012.20040 and earlier, 2017.011.30148 and earlier, 2017.011.30148 and earlier, ... |
| CVE-2019-8220 | CRITICAL | 9.8 | 4.1% | Oct 17, 2019 | Adobe Acrobat and Reader versions, 2019.012.20040 and earlier, 2017.011.30148 and earlier, 2017.011.30148 and earlier, 2... |
| CVE-2019-8215 | CRITICAL | 9.8 | 4.1% | Oct 17, 2019 | Adobe Acrobat and Reader versions , 2019.012.20040 and earlier, 2017.011.30148 and earlier, 2017.011.30148 and earlier, ... |
Check if your code is affected by 2019 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now