2019 CVE Vulnerabilities
17,623 CVEs published in 2019.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2019-15045 | — | — | 4.9% | Aug 21, 2019 | AjaxDomainServlet in Zoho ManageEngine ServiceDesk Plus 10 allows User Enumeration. NOTE: the vendor's position is that ... |
| CVE-2019-14258 | — | — | 1.7% | Aug 21, 2019 | The XML-RPC subsystem in Zenoss 2.5.3 allows XXE attacks that lead to unauthenticated information disclosure via port 99... |
| CVE-2019-14257 | — | — | 0.6% | Aug 21, 2019 | pyraw in Zenoss 2.5.3 allows local privilege escalation by modifying environment variables to redirect execution before ... |
| CVE-2019-14246 | MEDIUM | 6.5 | 2.2% | Aug 21, 2019 | In CentOS-WebPanel.com (aka CWP) CentOS Web Panel 0.9.8.851, an insecure object reference allows an attacker to discover... |
| CVE-2019-14245 | MEDIUM | 6.5 | 1.9% | Aug 21, 2019 | In CentOS-WebPanel.com (aka CWP) CentOS Web Panel 0.9.8.851, an insecure object reference allows an attacker to delete d... |
| CVE-2019-13599 | MEDIUM | 5.3 | 4.0% | Aug 21, 2019 | In CentOS-WebPanel.com (aka CWP) CentOS Web Panel 0.9.8.848, the Login process allows attackers to check whether a usern... |
| CVE-2019-13477 | — | — | 0.7% | Aug 21, 2019 | In CentOS-WebPanel.com (aka CWP) CentOS Web Panel 0.9.8.837, CSRF in the forgot password function allows an attacker to ... |
| CVE-2019-12634 | HIGH | 7.5 | 2.0% | Aug 21, 2019 | A vulnerability in the web-based management interface of Cisco Integrated Management Controller (IMC) Supervisor, Cisco ... |
| CVE-2019-12627 | HIGH | 7.5 | 1.2% | Aug 21, 2019 | A vulnerability in the application policy configuration of the Cisco Firepower Threat Defense (FTD) Software could allow... |
| CVE-2019-12626 | MEDIUM | 4.8 | 0.8% | Aug 21, 2019 | A vulnerability in the web-based management interface of Cisco Unified Contact Center Express (Unified CCX) could allow ... |
| CVE-2019-12624 | HIGH | 8.8 | 18.7% | Aug 21, 2019 | A vulnerability in the web-based management interface of Cisco IOS XE New Generation Wireless Controller (NGWC) could al... |
| CVE-2019-5041 | HIGH | 8.8 | 3.3% | Aug 21, 2019 | An exploitable Stack Based Buffer Overflow vulnerability exists in the EnumMetaInfo function of Aspose Aspose.Words libr... |
| CVE-2019-5033 | HIGH | 8.8 | 3.1% | Aug 21, 2019 | An exploitable out-of-bounds read vulnerability exists in the Number record parser of Aspose Aspose.Cells 19.1.0 library... |
| CVE-2019-5032 | HIGH | 8.8 | 3.1% | Aug 21, 2019 | An exploitable out-of-bounds read vulnerability exists in the LabelSst record parser of Aspose Aspose.Cells 19.1.0 libra... |
| CVE-2019-15295 | — | — | 1.4% | Aug 21, 2019 | An Untrusted Search Path vulnerability in the ServiceInstance.dll library versions 1.0.15.119 and lower, as used in Bitd... |
| CVE-2019-12623 | MEDIUM | 4.3 | 1.2% | Aug 21, 2019 | A vulnerability in the web server functionality of Cisco Enterprise Network Functions Virtualization Infrastructure Soft... |
| CVE-2019-12622 | MEDIUM | 5.5 | 0.3% | Aug 21, 2019 | A vulnerability in Cisco RoomOS Software could allow an authenticated, local attacker to write files to the underlying f... |
| CVE-2019-12621 | HIGH | 7.4 | 0.4% | Aug 21, 2019 | A vulnerability in Cisco HyperFlex Software could allow an unauthenticated, remote attacker to perform a man-in-the-midd... |
| CVE-2019-11897 | HIGH | 8.6 | 1.8% | Aug 21, 2019 | A Server-Side Request Forgery (SSRF) vulnerability in the backup & restore functionality in earlier versions than ProSys... |
| CVE-2019-11551 | — | — | 0.3% | Aug 21, 2019 | In Code42 Enterprise and Crashplan for Small Business through Client version 6.9.1, an attacker can craft a restore requ... |
| CVE-2019-3634 | MEDIUM | 5.5 | 0.2% | Aug 21, 2019 | Buffer overflow in McAfee Data Loss Prevention (DLPe) for Windows 11.x prior to 11.3.2.8 allows local user to cause the ... |
| CVE-2019-3633 | MEDIUM | 5.5 | 0.3% | Aug 21, 2019 | Buffer overflow in McAfee Data Loss Prevention (DLPe) for Windows 11.x prior to 11.3.2.8 allows local user to cause the ... |
| CVE-2019-13458 | MEDIUM | 6.5 | 1.7% | Aug 21, 2019 | An issue was discovered in Open Ticket Request System (OTRS) 7.0.x through 7.0.8, and Community Edition 5.0.x through 5.... |
| CVE-2019-12746 | MEDIUM | 6.5 | 2.0% | Aug 21, 2019 | An issue was discovered in Open Ticket Request System (OTRS) Community Edition 5.0.x through 5.0.36 and 6.0.x through 6.... |
| CVE-2019-15112 | MEDIUM | 6.1 | 1.0% | Aug 21, 2019 | The wp-slimstat plugin before 4.8.1 for WordPress has XSS. |
Check if your code is affected by 2019 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now