2019 CVE Vulnerabilities
17,623 CVEs published in 2019.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2019-1010169 | — | — | 1.4% | Jul 23, 2019 | Jsish 2.4.77 2.0477 is affected by: Out-of-bounds Read. The impact is: denial of service. The component is: function lex... |
| CVE-2019-1010162 | — | — | 0.8% | Jul 23, 2019 | jsish 2.4.74 2.0474 is affected by: CWE-476: NULL Pointer Dereference. The impact is: denial of service. The component i... |
| CVE-2019-1010156 | — | — | — | Jul 23, 2019 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2019-1010155. Reason: This candidate is a duplicate o... |
| CVE-2019-1010155 | CRITICAL | 9.1 | 8.6% | Jul 23, 2019 | D-Link DSL-2750U 1.11 is affected by: Authentication Bypass. The impact is: denial of service and information leakage. T... |
| CVE-2019-1010153 | — | — | 1.5% | Jul 23, 2019 | zzcms 8.3 and earlier is affected by: SQL Injection. The impact is: sql inject. The component is: zs/subzs.php. |
| CVE-2019-1010152 | — | — | 2.4% | Jul 23, 2019 | zzcms 8.3 and earlier is affected by: File Delete to Code Execution. The impact is: getshell. The component is: user/man... |
| CVE-2019-1010150 | — | — | 2.4% | Jul 23, 2019 | zzcms 8.3 and earlier is affected by: File Delete to Code Execution. The impact is: getshell. The component is: /user/zs... |
| CVE-2019-1010149 | — | — | 2.5% | Jul 23, 2019 | zzcms version 8.3 and earlier is affected by: File Delete to Code Execution. The impact is: zzcms File Delete to Code Ex... |
| CVE-2019-1010148 | — | — | 2.3% | Jul 23, 2019 | zzcms version 8.3 and earlier is affected by: SQL Injection. The impact is: zzcms File Delete to Code Execution. |
| CVE-2019-14241 | — | — | 70.2% | Jul 23, 2019 | HAProxy through 2.0.2 allows attackers to cause a denial of service (ha_panic) via vectors related to htx_manage_client_... |
| CVE-2019-10173 | CRITICAL | 9.8 | 94.8% | Jul 23, 2019 | It was found that xstream API version 1.4.10 before 1.4.11 introduced a regression for a previous deserialization flaw. ... |
| CVE-2019-1010129 | — | — | — | Jul 23, 2019 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2019-1010127. Reason: This candidate is a reservation... |
| CVE-2019-1010124 | MEDIUM | 5.4 | 3.2% | Jul 23, 2019 | WebAppick WooCommerce Product Feed 2.2.18 and earlier is affected by: Cross Site Scripting (XSS). The impact is: XSS to ... |
| CVE-2019-1010123 | — | — | 1.2% | Jul 23, 2019 | MODX Revolution Gallery 1.7.0 is affected by: CWE-434: Unrestricted Upload of File with Dangerous Type. The impact is: C... |
| CVE-2019-14240 | — | — | 0.8% | Jul 23, 2019 | WCMS v0.3.2 has a CSRF vulnerability, with resultant directory traversal, to modify index.html via the /wex/html.php?fin... |
| CVE-2019-12552 | — | — | 1.5% | Jul 22, 2019 | In SweetScape 010 Editor 9.0.1, an integer overflow during the initialization of variables could allow an attacker to ca... |
| CVE-2019-12551 | — | — | 2.1% | Jul 22, 2019 | In SweetScape 010 Editor 9.0.1, improper validation of arguments in the internal implementation of the Memcpy function (... |
| CVE-2019-3414 | — | — | 0.5% | Jul 22, 2019 | All versions up to V1.19.20.02 of ZTE OTCP product are impacted by XSS vulnerability. Due to XSS, when an attacker invok... |
| CVE-2019-12328 | CRITICAL | 9 | 4.2% | Jul 22, 2019 | A command injection (missing input validation) issue in the remote phonebook configuration URI in the web interface of t... |
| CVE-2019-12327 | HIGH | 7.2 | 1.9% | Jul 22, 2019 | Hardcoded credentials in the Akuvox R50P VoIP phone 50.0.6.156 allow an attacker to get access to the device via telnet.... |
| CVE-2019-1010224 | — | — | — | Jul 22, 2019 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2018-19802. Reason: This candidate is a reservation d... |
| CVE-2019-1010223 | — | — | — | Jul 22, 2019 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2018-19800. Reason: This candidate is a reservation d... |
| CVE-2019-1010222 | — | — | — | Jul 22, 2019 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2018-19801. Reason: This candidate is a reservation d... |
| CVE-2019-1010220 | — | — | 1.3% | Jul 22, 2019 | tcpdump.org tcpdump 4.9.2 is affected by: CWE-126: Buffer Over-read. The impact is: May expose Saved Frame Pointer, Retu... |
| CVE-2019-1010218 | HIGH | 7.5 | 1.3% | Jul 22, 2019 | Cherokee Webserver Latest Cherokee Web server Upto Version 1.2.103 (Current stable) is affected by: Buffer Overflow - CW... |
Check if your code is affected by 2019 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now