2019 CVE Vulnerabilities

17,619 CVEs published in 2019.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2019-17026HIGH8.8Incorrect alias information in IonMonkey JIT compiler for setting array elements could lead to a type confusion. We are ...
CVE-2019-7007HIGH8.6A directory traversal vulnerability has been found in the Avaya Equinox Management(iView)versions R9.1.9.0 and earlier. ...
CVE-2019-4301HIGH8.4BigFix Self-Service Application (SSA) is vulnerable to arbitrary code execution if Javascript code is included in Runnin...
CVE-2019-10805HIGH7.5valib through 2.0.0 allows Internal Property Tampering. A maliciously crafted JavaScript object can bypass several inspe...
CVE-2019-19943HIGH7.5The HTTP service in quickweb.exe in Pablo Quick 'n Easy Web Server 3.3.8 allows Remote Unauthenticated Heap Memory Corru...
CVE-2019-10064HIGH7.5hostapd before 2.6, in EAP mode, makes calls to the rand() and random() standard library functions without any preceding...
CVE-2019-8741HIGH7.5A denial of service issue was addressed with improved input validation.
CVE-2019-3698HIGH7UNIX Symbolic Link (Symlink) Following vulnerability in the cronjob shipped with nagios of SUSE Linux Enterprise Server ...
CVE-2019-5326HIGH7.2An administrative application user of or application user with write access to Aruba Airwave VisualRF is able to obtain ...
CVE-2019-5323HIGH7.2There are command injection vulnerabilities present in the AirWave application. Certain input fields controlled by an ad...
CVE-2019-18238HIGH7.5In Moxa ioLogik 2500 series firmware, Version 3.0 or lower, and IOxpress configuration utility, Version 2.3.0 or lower, ...
CVE-2019-17274HIGH7.8NetApp FAS 8300/8700 and AFF A400 Baseboard Management Controller (BMC) firmware versions 13.x prior to 13.1P1 were ship...
CVE-2019-19989HIGH7.5An issue was discovered in Selesta Visual Access Manager (VAM) 4.15.0 through 4.29. Several PHP pages, and other type of...
CVE-2019-19988HIGH8.8An issue was discovered in Selesta Visual Access Manager (VAM) 4.15.0 through 4.29. A user with valid credentials is abl...
CVE-2019-19986HIGH7.5An issue was discovered in Selesta Visual Access Manager (VAM) 4.15.0 through 4.29. An attacker without authentication i...
CVE-2019-4000HIGH7.8Improper neutralization of directives in dynamically evaluated code in Druva inSync Mac OS Client 6.5.0 allows a local, ...
CVE-2019-3999HIGH7.8Improper neutralization of special elements used in an OS command in Druva inSync Windows Client 6.5.0 allows a local, u...
CVE-2019-5165HIGH7.2An exploitable authentication bypass vulnerability exists in the hostname processing of the Moxa AWK-3131A firmware vers...
CVE-2019-5162HIGH8.8An exploitable improper access control vulnerability exists in the iw_webs account settings functionality of the Moxa AW...
CVE-2019-5153HIGH8.8An exploitable remote code execution vulnerability exists in the iw_webs configuration parsing functionality of the Moxa...
CVE-2019-5148HIGH7.5An exploitable denial-of-service vulnerability exists in ServiceAgent functionality of the Moxa AWK-3131A, firmware vers...
CVE-2019-5143HIGH8.8An exploitable format string vulnerability exists in the iw_console conio_writestr functionality of the Moxa AWK-3131A f...
CVE-2019-5142HIGH7.2An exploitable command injection vulnerability exists in the hostname functionality of the Moxa AWK-3131A firmware versi...
CVE-2019-5141HIGH8.8An exploitable command injection vulnerability exists in the iw_webs functionality of the Moxa AWK-3131A firmware versio...
CVE-2019-5140HIGH8.8An exploitable command injection vulnerability exists in the iwwebs functionality of the Moxa AWK-3131A firmware version...

Check if your code is affected by 2019 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now