2019 CVE Vulnerabilities
17,619 CVEs published in 2019.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2019-7656 | HIGH | 7.8 | 0.5% | Jan 29, 2020 | A privilege escalation vulnerability in Wowza Streaming Engine 4.8.0 and earlier allows any unprivileged Linux user to e... |
| CVE-2019-4707 | HIGH | 7.1 | 1.4% | Jan 28, 2020 | IBM Security Access Manager Appliance 9.0.7.0 is vulnerable to an XML External Entity Injection (XXE) attack when proces... |
| CVE-2019-4639 | HIGH | 7.5 | 0.8% | Jan 28, 2020 | IBM Security Secret Server 10.7 uses weaker than expected cryptographic algorithms that could allow an attacker to decry... |
| CVE-2019-4620 | HIGH | 7.8 | 0.4% | Jan 28, 2020 | IBM MQ Appliance 8.0 and 9.0 LTS could allow a local attacker to bypass security restrictions caused by improper validat... |
| CVE-2019-5472 | HIGH | 7.5 | 1.9% | Jan 28, 2020 | An authorization issue was discovered in Gitlab versions < 12.1.2, < 12.0.4, and < 11.11.6 that prevented owners and mai... |
| CVE-2019-5470 | HIGH | 7.5 | 1.6% | Jan 28, 2020 | An information disclosure issue was discovered GitLab versions < 12.1.2, < 12.0.4, and < 11.11.6 in the security dashboa... |
| CVE-2019-5468 | HIGH | 8.8 | 2.1% | Jan 28, 2020 | An privilege escalation issue was discovered in Gitlab versions < 12.1.2, < 12.0.4, and < 11.11.6 when Mattermost slash ... |
| CVE-2019-5462 | HIGH | 8.8 | 2.5% | Jan 28, 2020 | A privilege escalation issue was discovered in GitLab CE/EE 9.0 and later when trigger tokens are not rotated once owner... |
| CVE-2019-15590 | HIGH | 7.5 | 1.1% | Jan 28, 2020 | An access control issue exists in < 12.3.5, < 12.2.8, and < 12.1.14 for GitLab Community Edition (CE) and Enterprise Edi... |
| CVE-2019-15583 | HIGH | 7.5 | 1.4% | Jan 28, 2020 | An information disclosure exists in < 12.3.2, < 12.2.6, and < 12.1.12 for GitLab Community Edition (CE) and Enterprise E... |
| CVE-2019-13521 | HIGH | 7.8 | 5.6% | Jan 27, 2020 | A maliciously crafted program file opened by an unsuspecting user of Rockwell Automation Arena Simulation Software versi... |
| CVE-2019-13519 | HIGH | 7.8 | 5.6% | Jan 27, 2020 | A maliciously crafted program file opened by an unsuspecting user of Rockwell Automation Arena Simulation Software versi... |
| CVE-2019-11288 | HIGH | 7 | 0.3% | Jan 27, 2020 | In Pivotal tc Server, 3.x versions prior to 3.2.19 and 4.x versions prior to 4.0.10, and Pivotal tc Runtimes, 7.x versio... |
| CVE-2019-19824 | HIGH | 8.8 | 25.1% | Jan 27, 2020 | On certain TOTOLINK Realtek SDK based routers, an authenticated attacker may execute arbitrary OS commands via the sysCm... |
| CVE-2019-19823 | HIGH | 7.5 | 6.4% | Jan 27, 2020 | A certain router administration interface (that includes Realtek APMIB 0.11f for Boa 0.94.14rc21) stores cleartext admin... |
| CVE-2019-19822 | HIGH | 7.5 | 8.7% | Jan 27, 2020 | A certain router administration interface (that includes Realtek APMIB 0.11f for Boa 0.94.14rc21) allows remote attacker... |
| CVE-2019-17099 | HIGH | 7.8 | 0.7% | Jan 27, 2020 | An Untrusted Search Path vulnerability in EPSecurityService.exe as used in Bitdefender Endpoint Security Tools versions ... |
| CVE-2019-17094 | HIGH | 7.8 | 0.5% | Jan 27, 2020 | A Stack-based Buffer Overflow vulnerability in libbelkin_api.so component of Belkin WeMo Insight Switch firmware allows ... |
| CVE-2019-17190 | HIGH | 7.8 | 0.5% | Jan 27, 2020 | A Local Privilege Escalation issue was discovered in Avast Secure Browser 76.0.1659.101. The vulnerability is due to an ... |
| CVE-2019-17102 | HIGH | 8.1 | 1.9% | Jan 27, 2020 | An exploitable command execution vulnerability exists in the recovery partition of Bitdefender BOX 2, version 2.0.1.91. ... |
| CVE-2019-20432 | HIGH | 7.5 | 1.8% | Jan 27, 2020 | In the Lustre file system before 2.12.3, the mdt module has an out-of-bounds access and panic due to the lack of validat... |
| CVE-2019-20431 | HIGH | 7.5 | 1.9% | Jan 27, 2020 | In the Lustre file system before 2.12.3, the ptlrpc module has an osd_map_remote_to_local out-of-bounds access and panic... |
| CVE-2019-20430 | HIGH | 7.5 | 2.2% | Jan 27, 2020 | In the Lustre file system before 2.12.3, the mdt module has an LBUG panic (via a large MDT Body eadatasize field) due to... |
| CVE-2019-20429 | HIGH | 7.5 | 1.9% | Jan 27, 2020 | In the Lustre file system before 2.12.3, the ptlrpc module has an out-of-bounds read and panic (via a modified lm_bufcou... |
| CVE-2019-20428 | HIGH | 7.5 | 1.8% | Jan 27, 2020 | In the Lustre file system before 2.12.3, the ptlrpc module has an out-of-bounds read and panic due to the lack of valida... |
Check if your code is affected by 2019 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now