2019 CVE Vulnerabilities

17,624 CVEs published in 2019.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2019-20487HIGH8.8An issue was discovered on NETGEAR WNR1000V4 1.1.0.54 devices. Multiple actions within the WNR1000V4 web management cons...
CVE-2019-18897HIGH7.8A UNIX Symbolic Link (Symlink) Following vulnerability in the packaging of salt of SUSE Linux Enterprise Server 12, SUSE...
CVE-2019-12183HIGH7.5Incorrect Access Control in Safescan Timemoto TM-616 and TA-8000 series allows remote attackers to read any file via the...
CVE-2019-17026HIGH8.8Incorrect alias information in IonMonkey JIT compiler for setting array elements could lead to a type confusion. We are ...
CVE-2019-7007HIGH8.6A directory traversal vulnerability has been found in the Avaya Equinox Management(iView)versions R9.1.9.0 and earlier. ...
CVE-2019-4301HIGH8.4BigFix Self-Service Application (SSA) is vulnerable to arbitrary code execution if Javascript code is included in Runnin...
CVE-2019-10805HIGH7.5valib through 2.0.0 allows Internal Property Tampering. A maliciously crafted JavaScript object can bypass several inspe...
CVE-2019-19943HIGH7.5The HTTP service in quickweb.exe in Pablo Quick 'n Easy Web Server 3.3.8 allows Remote Unauthenticated Heap Memory Corru...
CVE-2019-10064HIGH7.5hostapd before 2.6, in EAP mode, makes calls to the rand() and random() standard library functions without any preceding...
CVE-2019-8741HIGH7.5A denial of service issue was addressed with improved input validation.
CVE-2019-3698HIGH7UNIX Symbolic Link (Symlink) Following vulnerability in the cronjob shipped with nagios of SUSE Linux Enterprise Server ...
CVE-2019-5326HIGH7.2An administrative application user of or application user with write access to Aruba Airwave VisualRF is able to obtain ...
CVE-2019-5323HIGH7.2There are command injection vulnerabilities present in the AirWave application. Certain input fields controlled by an ad...
CVE-2019-18238HIGH7.5In Moxa ioLogik 2500 series firmware, Version 3.0 or lower, and IOxpress configuration utility, Version 2.3.0 or lower, ...
CVE-2019-17274HIGH7.8NetApp FAS 8300/8700 and AFF A400 Baseboard Management Controller (BMC) firmware versions 13.x prior to 13.1P1 were ship...
CVE-2019-19989HIGH7.5An issue was discovered in Selesta Visual Access Manager (VAM) 4.15.0 through 4.29. Several PHP pages, and other type of...
CVE-2019-19988HIGH8.8An issue was discovered in Selesta Visual Access Manager (VAM) 4.15.0 through 4.29. A user with valid credentials is abl...
CVE-2019-19986HIGH7.5An issue was discovered in Selesta Visual Access Manager (VAM) 4.15.0 through 4.29. An attacker without authentication i...
CVE-2019-4000HIGH7.8Improper neutralization of directives in dynamically evaluated code in Druva inSync Mac OS Client 6.5.0 allows a local, ...
CVE-2019-3999HIGH7.8Improper neutralization of special elements used in an OS command in Druva inSync Windows Client 6.5.0 allows a local, u...
CVE-2019-5165HIGH7.2An exploitable authentication bypass vulnerability exists in the hostname processing of the Moxa AWK-3131A firmware vers...
CVE-2019-5162HIGH8.8An exploitable improper access control vulnerability exists in the iw_webs account settings functionality of the Moxa AW...
CVE-2019-5153HIGH8.8An exploitable remote code execution vulnerability exists in the iw_webs configuration parsing functionality of the Moxa...
CVE-2019-5148HIGH7.5An exploitable denial-of-service vulnerability exists in ServiceAgent functionality of the Moxa AWK-3131A, firmware vers...
CVE-2019-5143HIGH8.8An exploitable format string vulnerability exists in the iw_console conio_writestr functionality of the Moxa AWK-3131A f...

Check if your code is affected by 2019 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now