2019 CVE Vulnerabilities

17,623 CVEs published in 2019.

CVE IDSeverityCVSSDescription
CVE-2019-15045AjaxDomainServlet in Zoho ManageEngine ServiceDesk Plus 10 allows User Enumeration. NOTE: the vendor's position is that ...
CVE-2019-14258The XML-RPC subsystem in Zenoss 2.5.3 allows XXE attacks that lead to unauthenticated information disclosure via port 99...
CVE-2019-14257pyraw in Zenoss 2.5.3 allows local privilege escalation by modifying environment variables to redirect execution before ...
CVE-2019-14246MEDIUM6.5In CentOS-WebPanel.com (aka CWP) CentOS Web Panel 0.9.8.851, an insecure object reference allows an attacker to discover...
CVE-2019-14245MEDIUM6.5In CentOS-WebPanel.com (aka CWP) CentOS Web Panel 0.9.8.851, an insecure object reference allows an attacker to delete d...
CVE-2019-13599MEDIUM5.3In CentOS-WebPanel.com (aka CWP) CentOS Web Panel 0.9.8.848, the Login process allows attackers to check whether a usern...
CVE-2019-13477In CentOS-WebPanel.com (aka CWP) CentOS Web Panel 0.9.8.837, CSRF in the forgot password function allows an attacker to ...
CVE-2019-12634HIGH7.5A vulnerability in the web-based management interface of Cisco Integrated Management Controller (IMC) Supervisor, Cisco ...
CVE-2019-12627HIGH7.5A vulnerability in the application policy configuration of the Cisco Firepower Threat Defense (FTD) Software could allow...
CVE-2019-12626MEDIUM4.8A vulnerability in the web-based management interface of Cisco Unified Contact Center Express (Unified CCX) could allow ...
CVE-2019-12624HIGH8.8A vulnerability in the web-based management interface of Cisco IOS XE New Generation Wireless Controller (NGWC) could al...
CVE-2019-5041HIGH8.8An exploitable Stack Based Buffer Overflow vulnerability exists in the EnumMetaInfo function of Aspose Aspose.Words libr...
CVE-2019-5033HIGH8.8An exploitable out-of-bounds read vulnerability exists in the Number record parser of Aspose Aspose.Cells 19.1.0 library...
CVE-2019-5032HIGH8.8An exploitable out-of-bounds read vulnerability exists in the LabelSst record parser of Aspose Aspose.Cells 19.1.0 libra...
CVE-2019-15295An Untrusted Search Path vulnerability in the ServiceInstance.dll library versions 1.0.15.119 and lower, as used in Bitd...
CVE-2019-12623MEDIUM4.3A vulnerability in the web server functionality of Cisco Enterprise Network Functions Virtualization Infrastructure Soft...
CVE-2019-12622MEDIUM5.5A vulnerability in Cisco RoomOS Software could allow an authenticated, local attacker to write files to the underlying f...
CVE-2019-12621HIGH7.4A vulnerability in Cisco HyperFlex Software could allow an unauthenticated, remote attacker to perform a man-in-the-midd...
CVE-2019-11897HIGH8.6A Server-Side Request Forgery (SSRF) vulnerability in the backup & restore functionality in earlier versions than ProSys...
CVE-2019-11551In Code42 Enterprise and Crashplan for Small Business through Client version 6.9.1, an attacker can craft a restore requ...
CVE-2019-3634MEDIUM5.5Buffer overflow in McAfee Data Loss Prevention (DLPe) for Windows 11.x prior to 11.3.2.8 allows local user to cause the ...
CVE-2019-3633MEDIUM5.5Buffer overflow in McAfee Data Loss Prevention (DLPe) for Windows 11.x prior to 11.3.2.8 allows local user to cause the ...
CVE-2019-13458MEDIUM6.5An issue was discovered in Open Ticket Request System (OTRS) 7.0.x through 7.0.8, and Community Edition 5.0.x through 5....
CVE-2019-12746MEDIUM6.5An issue was discovered in Open Ticket Request System (OTRS) Community Edition 5.0.x through 5.0.36 and 6.0.x through 6....
CVE-2019-15112MEDIUM6.1The wp-slimstat plugin before 4.8.1 for WordPress has XSS.

Check if your code is affected by 2019 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now