2019 CVE Vulnerabilities
17,619 CVEs published in 2019.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2019-5139 | HIGH | 7.1 | 0.3% | Feb 25, 2020 | An exploitable use of hard-coded credentials vulnerability exists in multiple iw_* utilities of the Moxa AWK-3131A firmw... |
| CVE-2019-5137 | HIGH | 7.5 | 2.3% | Feb 25, 2020 | The usage of hard-coded cryptographic keys within the ServiceAgent binary allows for the decryption of captured traffic ... |
| CVE-2019-5136 | HIGH | 8.8 | 2.5% | Feb 25, 2020 | An exploitable privilege escalation vulnerability exists in the iw_console functionality of the Moxa AWK-3131A firmware ... |
| CVE-2019-4557 | HIGH | 7.5 | 0.8% | Feb 25, 2020 | IBM Qradar Advisor 1.1 through 2.5 with Watson uses weaker than expected cryptographic algorithms that could allow an at... |
| CVE-2019-10799 | HIGH | 8.2 | 2.2% | Feb 24, 2020 | compile-sass prior to 1.0.5 allows execution of arbritary commands. The function "setupCleanupOnExit(cssPath)" within "d... |
| CVE-2019-20480 | HIGH | 8.8 | 0.4% | Feb 24, 2020 | In MIELE XGW 3000 ZigBee Gateway before 2.4.0, a malicious website visited by an authenticated admin user or a malicious... |
| CVE-2019-20044 | HIGH | 7.8 | 0.5% | Feb 24, 2020 | In Zsh before 5.8, attackers able to execute commands can regain privileges dropped by the --no-PRIVILEGED option. Zsh f... |
| CVE-2019-15299 | HIGH | 8.8 | 1.6% | Feb 24, 2020 | An issue was discovered in Centreon Web through 19.04.3. When a user changes his password on his profile page, the conta... |
| CVE-2019-19866 | HIGH | 7.5 | 1.9% | Feb 21, 2020 | Atos Unify OpenScape UC Web Client V9 before version V9 R4.31.0 and V10 before version V10 R0.6.0 allows remote attacker... |
| CVE-2019-19452 | HIGH | 7.8 | 0.5% | Feb 21, 2020 | A buffer overflow was found in Patriot Viper RGB through 1.1 when processing IoControlCode 0x80102040. Local attackers (... |
| CVE-2019-14688 | HIGH | 7 | 1.8% | Feb 20, 2020 | Trend Micro has repackaged installers for several Trend Micro products that were found to utilize a version of an instal... |
| CVE-2019-16302 | HIGH | 7.5 | 1.7% | Feb 20, 2020 | An issue was discovered in Open Network Operating System (ONOS) 1.14. In the Ethernet VPN application (org.onosproject.e... |
| CVE-2019-16301 | HIGH | 7.5 | 1.7% | Feb 20, 2020 | An issue was discovered in Open Network Operating System (ONOS) 1.14. In the virtual tenant network application (org.ono... |
| CVE-2019-16300 | HIGH | 7.5 | 2.0% | Feb 20, 2020 | An issue was discovered in Open Network Operating System (ONOS) 1.14. In the access control application (org.onosproject... |
| CVE-2019-16299 | HIGH | 7.5 | 1.7% | Feb 20, 2020 | An issue was discovered in Open Network Operating System (ONOS) 1.14. In the mobility application (org.onosproject.mobil... |
| CVE-2019-16298 | HIGH | 7.5 | 1.7% | Feb 20, 2020 | An issue was discovered in Open Network Operating System (ONOS) 1.14. In the virtual broadband network gateway applicati... |
| CVE-2019-16297 | HIGH | 7.5 | 1.7% | Feb 20, 2020 | An issue was discovered in Open Network Operating System (ONOS) 1.14. In the P4 tutorial application (org.onosproject.p4... |
| CVE-2019-11189 | HIGH | 7.5 | 1.1% | Feb 20, 2020 | Authentication Bypass by Spoofing in org.onosproject.acl (access control) and org.onosproject.mobility (host mobility) i... |
| CVE-2019-4752 | HIGH | 8.8 | 1.3% | Feb 20, 2020 | IBM Emptoris Spend Analysis and IBM Emptoris Strategic Supply Management Platform 10.1.0.x, 10.1.1.x, and 10.1.3.x is vu... |
| CVE-2019-19741 | HIGH | 7.8 | 0.7% | Feb 20, 2020 | Electronic Arts Origin 10.5.55.33574 is vulnerable to local privilege escalation due to arbitrary directory DACL manipul... |
| CVE-2019-1950 | HIGH | 8.4 | 0.3% | Feb 19, 2020 | A vulnerability in Cisco IOS XE SD-WAN Software could allow an unauthenticated, local attacker to gain unauthorized acce... |
| CVE-2019-12437 | HIGH | 8.8 | 0.7% | Feb 19, 2020 | In SilverStripe through 4.3.3, the previous fix for SS-2018-007 does not completely mitigate the risk of CSRF in GraphQL... |
| CVE-2019-18352 | HIGH | 8.2 | 0.4% | Feb 18, 2020 | Improper access control exists on PHOENIX CONTACT FL NAT 2208 devices before V2.90 and FL NAT 2304-2GC-2SFP devices befo... |
| CVE-2019-10790 | HIGH | 7.5 | 1.8% | Feb 17, 2020 | taffydb npm module, vulnerable in all versions up to and including 2.7.3, allows attackers to forge adding additional pr... |
| CVE-2019-18998 | HIGH | 7.1 | 0.8% | Feb 17, 2020 | Insufficient access control in the web interface of ABB Asset Suite versions 9.0 to 9.3, 9.4 prior to 9.4.2.6, 9.5 prior... |
Check if your code is affected by 2019 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now