2019 CVE Vulnerabilities
17,619 CVEs published in 2019.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2019-16018 | MEDIUM | 6.5 | 1.1% | Jan 26, 2020 | A vulnerability in the implementation of Border Gateway Protocol (BGP) Ethernet VPN (EVPN) functionality in Cisco IOS XR... |
| CVE-2019-16015 | MEDIUM | 6.1 | 0.8% | Jan 26, 2020 | A vulnerability in the web-based management interface of the Cisco Data Center Analytics Framework application could all... |
| CVE-2019-16008 | MEDIUM | 5.4 | 0.6% | Jan 26, 2020 | A vulnerability in the web-based GUI of Cisco IP Phone 6800, 7800, and 8800 Series with Multiplatform Firmware could all... |
| CVE-2019-16003 | MEDIUM | 5.3 | 1.2% | Jan 26, 2020 | A vulnerability in the web-based management interface of Cisco UCS Director could allow an unauthenticated, remote attac... |
| CVE-2019-15278 | MEDIUM | 6.1 | 0.9% | Jan 26, 2020 | A vulnerability in the web-based management interface of Cisco Finesse could allow an unauthenticated, remote attacker t... |
| CVE-2019-15255 | MEDIUM | 6.5 | 1.1% | Jan 26, 2020 | A vulnerability in the web-based management interface of Cisco Identity Services Engine (ISE) could allow an authenticat... |
| CVE-2019-12619 | MEDIUM | 6.5 | 0.7% | Jan 26, 2020 | A vulnerability in the web interface for Cisco SD-WAN Solution vManage could allow an authenticated, remote attacker to ... |
| CVE-2019-1460 | MEDIUM | 4.6 | 1.4% | Jan 24, 2020 | A spoofing vulnerability exists in the way Microsoft Outlook for Android software parses specifically crafted email mess... |
| CVE-2019-1454 | MEDIUM | 5.5 | 0.6% | Jan 24, 2020 | An elevation of privilege vulnerability exists when the Windows User Profile Service (ProfSvc) improperly handles symlin... |
| CVE-2019-19632 | MEDIUM | 6.1 | 1.0% | Jan 24, 2020 | An issue was discovered in Big Switch Big Monitoring Fabric 6.2 through 6.2.4, 6.3 through 6.3.9, 7.0 through 7.0.3, and... |
| CVE-2019-14885 | MEDIUM | 4.3 | 0.7% | Jan 23, 2020 | A flaw was found in the JBoss EAP Vault system in all versions before 7.2.6.GA. Confidential information of the system p... |
| CVE-2019-19894 | MEDIUM | 5.5 | 0.3% | Jan 23, 2020 | In IXP EasyInstall 6.2.13723, it is possible to temporarily disable UAC by using the Agent Service on a client system. A... |
| CVE-2019-16516 | MEDIUM | 5.3 | 19.1% | Jan 23, 2020 | An issue was discovered in ConnectWise Control (formerly known as ScreenConnect) 19.3.25270.7185. There is a user enumer... |
| CVE-2019-16515 | MEDIUM | 6.5 | 1.7% | Jan 23, 2020 | An issue was discovered in ConnectWise Control (formerly known as ScreenConnect) 19.3.25270.7185. Certain HTTP security ... |
| CVE-2019-16512 | MEDIUM | 4.8 | 1.2% | Jan 23, 2020 | An issue was discovered in ConnectWise Control (formerly known as ScreenConnect) 19.3.25270.7185. There is stored XSS in... |
| CVE-2019-15707 | MEDIUM | 4.9 | 1.2% | Jan 23, 2020 | An improper access control vulnerability in FortiMail admin webUI 6.2.0, 6.0.0 to 6.0.6, 5.4.10 and below may allow admi... |
| CVE-2019-5593 | MEDIUM | 5.5 | 0.2% | Jan 23, 2020 | Improper permission or value checking in the CLI console may allow a non-privileged user to obtain Fortinet FortiOS plai... |
| CVE-2019-18222 | MEDIUM | 4.7 | 0.3% | Jan 23, 2020 | The ECDSA signature implementation in ecdsa.c in Arm Mbed Crypto 2.1 and Mbed TLS through 2.19.1 does not reduce the bli... |
| CVE-2019-18899 | MEDIUM | 5.5 | 0.3% | Jan 23, 2020 | The apt-cacher-ng package of openSUSE Leap 15.1 runs operations in user owned directory /run/apt-cacher-ng with root pri... |
| CVE-2019-19837 | MEDIUM | 5.3 | 2.0% | Jan 23, 2020 | Incorrect access control in the web interface in Ruckus Wireless Unleashed through 200.7.10.102.64 allows remote informa... |
| CVE-2019-20399 | MEDIUM | 5.9 | 0.9% | Jan 23, 2020 | A timing vulnerability in the Scalar::check_overflow function in Parity libsecp256k1-rs before 0.3.1 potentially allows ... |
| CVE-2019-20398 | MEDIUM | 6.5 | 1.8% | Jan 22, 2020 | A NULL pointer dereference is present in libyang before v1.0-r3 in the function lys_extension_instances_free() due to a ... |
| CVE-2019-20396 | MEDIUM | 6.5 | 1.9% | Jan 22, 2020 | A segmentation fault is present in yyparse in libyang before v1.0-r1 due to a malformed pattern statement value during l... |
| CVE-2019-20395 | MEDIUM | 6.5 | 1.8% | Jan 22, 2020 | A stack consumption issue is present in libyang before v1.0-r1 due to the self-referential union type containing leafref... |
| CVE-2019-20392 | MEDIUM | 6.5 | 1.9% | Jan 22, 2020 | An invalid memory access flaw is present in libyang before v1.0-r1 in the function resolve_feature_value() when an if-fe... |
Check if your code is affected by 2019 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now