2019 CVE Vulnerabilities

17,619 CVEs published in 2019.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2019-16018MEDIUM6.5A vulnerability in the implementation of Border Gateway Protocol (BGP) Ethernet VPN (EVPN) functionality in Cisco IOS XR...
CVE-2019-16015MEDIUM6.1A vulnerability in the web-based management interface of the Cisco Data Center Analytics Framework application could all...
CVE-2019-16008MEDIUM5.4A vulnerability in the web-based GUI of Cisco IP Phone 6800, 7800, and 8800 Series with Multiplatform Firmware could all...
CVE-2019-16003MEDIUM5.3A vulnerability in the web-based management interface of Cisco UCS Director could allow an unauthenticated, remote attac...
CVE-2019-15278MEDIUM6.1A vulnerability in the web-based management interface of Cisco Finesse could allow an unauthenticated, remote attacker t...
CVE-2019-15255MEDIUM6.5A vulnerability in the web-based management interface of Cisco Identity Services Engine (ISE) could allow an authenticat...
CVE-2019-12619MEDIUM6.5A vulnerability in the web interface for Cisco SD-WAN Solution vManage could allow an authenticated, remote attacker to ...
CVE-2019-1460MEDIUM4.6A spoofing vulnerability exists in the way Microsoft Outlook for Android software parses specifically crafted email mess...
CVE-2019-1454MEDIUM5.5An elevation of privilege vulnerability exists when the Windows User Profile Service (ProfSvc) improperly handles symlin...
CVE-2019-19632MEDIUM6.1An issue was discovered in Big Switch Big Monitoring Fabric 6.2 through 6.2.4, 6.3 through 6.3.9, 7.0 through 7.0.3, and...
CVE-2019-14885MEDIUM4.3A flaw was found in the JBoss EAP Vault system in all versions before 7.2.6.GA. Confidential information of the system p...
CVE-2019-19894MEDIUM5.5In IXP EasyInstall 6.2.13723, it is possible to temporarily disable UAC by using the Agent Service on a client system. A...
CVE-2019-16516MEDIUM5.3An issue was discovered in ConnectWise Control (formerly known as ScreenConnect) 19.3.25270.7185. There is a user enumer...
CVE-2019-16515MEDIUM6.5An issue was discovered in ConnectWise Control (formerly known as ScreenConnect) 19.3.25270.7185. Certain HTTP security ...
CVE-2019-16512MEDIUM4.8An issue was discovered in ConnectWise Control (formerly known as ScreenConnect) 19.3.25270.7185. There is stored XSS in...
CVE-2019-15707MEDIUM4.9An improper access control vulnerability in FortiMail admin webUI 6.2.0, 6.0.0 to 6.0.6, 5.4.10 and below may allow admi...
CVE-2019-5593MEDIUM5.5Improper permission or value checking in the CLI console may allow a non-privileged user to obtain Fortinet FortiOS plai...
CVE-2019-18222MEDIUM4.7The ECDSA signature implementation in ecdsa.c in Arm Mbed Crypto 2.1 and Mbed TLS through 2.19.1 does not reduce the bli...
CVE-2019-18899MEDIUM5.5The apt-cacher-ng package of openSUSE Leap 15.1 runs operations in user owned directory /run/apt-cacher-ng with root pri...
CVE-2019-19837MEDIUM5.3Incorrect access control in the web interface in Ruckus Wireless Unleashed through 200.7.10.102.64 allows remote informa...
CVE-2019-20399MEDIUM5.9A timing vulnerability in the Scalar::check_overflow function in Parity libsecp256k1-rs before 0.3.1 potentially allows ...
CVE-2019-20398MEDIUM6.5A NULL pointer dereference is present in libyang before v1.0-r3 in the function lys_extension_instances_free() due to a ...
CVE-2019-20396MEDIUM6.5A segmentation fault is present in yyparse in libyang before v1.0-r1 due to a malformed pattern statement value during l...
CVE-2019-20395MEDIUM6.5A stack consumption issue is present in libyang before v1.0-r1 due to the self-referential union type containing leafref...
CVE-2019-20392MEDIUM6.5An invalid memory access flaw is present in libyang before v1.0-r1 in the function resolve_feature_value() when an if-fe...

Check if your code is affected by 2019 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now