2019 CVE Vulnerabilities

17,619 CVEs published in 2019.

CVE IDSeverityCVSSDescription
CVE-2019-12354HIGH7.2An issue was discovered in zzcms 2019. There is a SQL injection Vulnerability in /admin/showbad.php (when the attacker h...
CVE-2019-12353HIGH7.2An issue was discovered in zzcms 2019. There is a SQL injection Vulnerability in /admin/dl_sendmail.php (when the attack...
CVE-2019-12352HIGH8.8An issue was discovered in zzcms 2019. There is a SQL injection Vulnerability in /dl/dl_sendmail.php (when the attacker ...
CVE-2019-4575CRITICAL9.8IBM Financial Transaction Manager for Digital Payments for Multi-Platform 3.2.0 through 3.2.9 is vulnerable to SQL injec...
CVE-2019-25070MEDIUM6.1** UNSUPPORTED WHEN ASSIGNED ** A vulnerability was found in WolfCMS up to 0.8.3.1. It has been rated as problematic. Th...
CVE-2019-25069HIGH7.5A vulnerability, which was classified as problematic, has been found in Axios Italia Axios RE 1.7.0/7.0.0. This issue af...
CVE-2019-25068HIGH8.8A vulnerability classified as critical was found in Axios Italia Axios RE 1.7.0/7.0.0. This vulnerability affects unknow...
CVE-2019-25067HIGH8.8A vulnerability, which was classified as critical, was found in Podman and Varlink 1.5.1. This affects an unknown part o...
CVE-2019-25066HIGH8.8A vulnerability has been found in ajenti 2.1.31 and classified as critical. This vulnerability affects unknown code of t...
CVE-2019-25065CRITICAL9.8A vulnerability was found in OpenNetAdmin 18.1.1. It has been rated as critical. Affected by this issue is some unknown ...
CVE-2019-25064HIGH8.8A vulnerability was found in CoreHR Core Portal up to 27.0.7. It has been classified as problematic. Affected is an unkn...
CVE-2019-25063HIGH7.8A vulnerability was found in Sricam IP CCTV Camera. It has been classified as critical. Affected is an unknown function ...
CVE-2019-25062HIGH7.8A vulnerability was found in Sricam IP CCTV Camera and classified as critical. This issue affects some unknown processin...
CVE-2019-9972HIGH8.8PhoneSystem Terminal in 3CX Phone System (Debian based installation) 16.0.0.1570 allows an authenticated attacker to run...
CVE-2019-9971HIGH8.8PhoneSystem Terminal in 3CX Phone System (Debian based installation) 16.0.0.1570 allows an attacker to gain root privile...
CVE-2019-12351CRITICAL9.8An issue was discovered in zzcms 2019. SQL Injection exists in dl/dl_print.php via an id parameter value with a trailing...
CVE-2019-12350CRITICAL9.8An issue was discovered in zzcms 2019. SQL Injection exists in dl/dl_download.php via an id parameter value with a trail...
CVE-2019-12349CRITICAL9.8An issue was discovered in zzcms 2019. SQL Injection exists in /admin/dl_sendsms.php via the id parameter.
CVE-2019-25061HIGH7.5The random_password_generator (aka RandomPasswordGenerator) gem through 1.0.0 for Ruby uses Kernel#rand to generate pass...
CVE-2019-25060MEDIUM5.3The WPGraphQL WordPress plugin before 0.3.5 doesn't properly restrict access to information about other users' roles on ...
CVE-2019-12254CRITICAL9.8In multiple Tecson Tankspion and GOKs SmartBox 4 products the affected application doesn't properly restrict access to a...
CVE-2019-25059HIGH7.8Artifex Ghostscript through 9.26 mishandles .completefont. NOTE: this issue exists because of an incomplete fix for CVE-...
CVE-2019-6834HIGH7.8A CWE-502: Deserialization of Untrusted Data vulnerability exists which could allow an attacker to execute arbitrary cod...
CVE-2019-14839HIGH7.5It was observed that while login into Business-central console, HTTP request discloses sensitive information like userna...
CVE-2019-9564CRITICAL9.8A vulnerability in the authentication logic of Wyze Cam Pan v2, Cam v2, Cam v3 allows an attacker to bypass login and co...

Check if your code is affected by 2019 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now