2019 CVE Vulnerabilities
17,623 CVEs published in 2019.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2019-12260 | CRITICAL | 9.8 | 22.7% | Aug 9, 2019 | Wind River VxWorks 6.9 and vx7 has a Buffer Overflow in the TCP component (issue 2 of 4). This is an IPNET security vuln... |
| CVE-2019-12258 | HIGH | 7.5 | 23.4% | Aug 9, 2019 | Wind River VxWorks 6.6 through vx7 has Session Fixation in the TCP component. This is a IPNET security vulnerability: Do... |
| CVE-2019-12255 | CRITICAL | 9.8 | 75.3% | Aug 9, 2019 | Wind River VxWorks has a Buffer Overflow in the TCP component (issue 1 of 4). This is a IPNET security vulnerability: TC... |
| CVE-2019-11581 | CRITICAL | 9.8 | 84.6% | Aug 9, 2019 | There was a server-side template injection vulnerability in Jira Server and Data Center, in the ContactAdministrators an... |
| CVE-2019-11274 | MEDIUM | 6.1 | 0.8% | Aug 9, 2019 | Cloud Foundry UAA, versions prior to 74.0.0, is vulnerable to an XSS attack. A remote unauthenticated malicious attacker... |
| CVE-2019-11042 | HIGH | 7.1 | 4.4% | Aug 9, 2019 | When PHP EXIF extension is parsing EXIF information from an image, e.g. via exif_read_data() function, in PHP versions 7... |
| CVE-2019-11041 | HIGH | 7.1 | 4.4% | Aug 9, 2019 | When PHP EXIF extension is parsing EXIF information from an image, e.g. via exif_read_data() function, in PHP versions 7... |
| CVE-2019-3744 | HIGH | 7.8 | 0.4% | Aug 9, 2019 | Dell/Alienware Digital Delivery versions prior to 4.0.41 contain a privilege escalation vulnerability. A local non-privi... |
| CVE-2019-3742 | HIGH | 7.8 | 0.4% | Aug 9, 2019 | Dell/Alienware Digital Delivery versions prior to 3.5.2013 contain a privilege escalation vulnerability. A local non-pri... |
| CVE-2019-14433 | MEDIUM | 6.5 | 1.9% | Aug 9, 2019 | An issue was discovered in OpenStack Nova before 17.0.12, 18.x before 18.2.2, and 19.x before 19.0.2. If an API request ... |
| CVE-2019-12265 | MEDIUM | 5.3 | 55.3% | Aug 9, 2019 | Wind River VxWorks 6.5, 6.6, 6.7, 6.8, 6.9.3 and 6.9.4 has a Memory Leak in the IGMPv3 client component. There is an IPN... |
| CVE-2019-12263 | HIGH | 8.1 | 3.2% | Aug 9, 2019 | Wind River VxWorks 6.9.4 and vx7 has a Buffer Overflow in the TCP component (issue 4 of 4). There is an IPNET security v... |
| CVE-2019-12259 | HIGH | 7.5 | 15.9% | Aug 9, 2019 | Wind River VxWorks 6.6, 6.7, 6.8, 6.9 and vx7 has an array index error in the IGMPv3 client component. There is an IPNET... |
| CVE-2019-11776 | MEDIUM | 6.1 | 0.9% | Aug 9, 2019 | In Eclipse BIRT versions 1.0 to 4.7, the Report Viewer allows Reflected XSS in URL parameter. Attacker can execute the p... |
| CVE-2019-5498 | — | — | 1.1% | Aug 9, 2019 | OnCommand Insight versions through 7.3.6 may disclose sensitive account information to an authenticated user. |
| CVE-2019-5408 | — | — | 1.6% | Aug 9, 2019 | Command View Advanced Edition (CVAE) products contain a vulnerability that could expose configuration information of hos... |
| CVE-2019-5407 | — | — | 1.0% | Aug 9, 2019 | A remote information disclosure vulnerability was discovered in HPE 3PAR StoreServ Management and Core Software Media ve... |
| CVE-2019-5406 | — | — | 1.4% | Aug 9, 2019 | A remote session reuse vulnerability was discovered in HPE 3PAR StoreServ Management and Core Software Media version(s):... |
| CVE-2019-5405 | — | — | 1.6% | Aug 9, 2019 | A remote authorization bypass vulnerability was discovered in HPE 3PAR StoreServ Management and Core Software Media vers... |
| CVE-2019-5404 | — | — | 1.6% | Aug 9, 2019 | A remote script injection vulnerability was discovered in HPE 3PAR StoreServ Management and Core Software Media version(... |
| CVE-2019-5403 | — | — | 0.5% | Aug 9, 2019 | A remote multiple cross-site scripting vulnerability was discovered in HPE 3PAR StoreServ Management and Core Software M... |
| CVE-2019-5402 | — | — | 4.3% | Aug 9, 2019 | A remote authorization bypass vulnerability was discovered in HPE 3PAR StoreServ Management and Core Software Media vers... |
| CVE-2019-5400 | — | — | 0.9% | Aug 9, 2019 | A remote session reuse vulnerability was discovered in HPE 3PAR Service Processor version(s): prior to 5.0.5.1. |
| CVE-2019-5399 | — | — | 2.4% | Aug 9, 2019 | A remote gain authorized access vulnerability was discovered in HPE 3PAR Service Processor version(s): prior to 5.0.5.1. |
| CVE-2019-5398 | — | — | 0.7% | Aug 9, 2019 | A remote multiple multiple cross-site vulnerability was discovered in HPE 3PAR Service Processor version(s): prior to 5.... |
Check if your code is affected by 2019 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now