2019 CVE Vulnerabilities

17,623 CVEs published in 2019.

CVE IDSeverityCVSSDescription
CVE-2019-1010169Jsish 2.4.77 2.0477 is affected by: Out-of-bounds Read. The impact is: denial of service. The component is: function lex...
CVE-2019-1010162jsish 2.4.74 2.0474 is affected by: CWE-476: NULL Pointer Dereference. The impact is: denial of service. The component i...
CVE-2019-1010156Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2019-1010155. Reason: This candidate is a duplicate o...
CVE-2019-1010155CRITICAL9.1D-Link DSL-2750U 1.11 is affected by: Authentication Bypass. The impact is: denial of service and information leakage. T...
CVE-2019-1010153zzcms 8.3 and earlier is affected by: SQL Injection. The impact is: sql inject. The component is: zs/subzs.php.
CVE-2019-1010152zzcms 8.3 and earlier is affected by: File Delete to Code Execution. The impact is: getshell. The component is: user/man...
CVE-2019-1010150zzcms 8.3 and earlier is affected by: File Delete to Code Execution. The impact is: getshell. The component is: /user/zs...
CVE-2019-1010149zzcms version 8.3 and earlier is affected by: File Delete to Code Execution. The impact is: zzcms File Delete to Code Ex...
CVE-2019-1010148zzcms version 8.3 and earlier is affected by: SQL Injection. The impact is: zzcms File Delete to Code Execution.
CVE-2019-14241HAProxy through 2.0.2 allows attackers to cause a denial of service (ha_panic) via vectors related to htx_manage_client_...
CVE-2019-10173CRITICAL9.8It was found that xstream API version 1.4.10 before 1.4.11 introduced a regression for a previous deserialization flaw. ...
CVE-2019-1010129Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2019-1010127. Reason: This candidate is a reservation...
CVE-2019-1010124MEDIUM5.4WebAppick WooCommerce Product Feed 2.2.18 and earlier is affected by: Cross Site Scripting (XSS). The impact is: XSS to ...
CVE-2019-1010123MODX Revolution Gallery 1.7.0 is affected by: CWE-434: Unrestricted Upload of File with Dangerous Type. The impact is: C...
CVE-2019-14240WCMS v0.3.2 has a CSRF vulnerability, with resultant directory traversal, to modify index.html via the /wex/html.php?fin...
CVE-2019-12552In SweetScape 010 Editor 9.0.1, an integer overflow during the initialization of variables could allow an attacker to ca...
CVE-2019-12551In SweetScape 010 Editor 9.0.1, improper validation of arguments in the internal implementation of the Memcpy function (...
CVE-2019-3414All versions up to V1.19.20.02 of ZTE OTCP product are impacted by XSS vulnerability. Due to XSS, when an attacker invok...
CVE-2019-12328CRITICAL9A command injection (missing input validation) issue in the remote phonebook configuration URI in the web interface of t...
CVE-2019-12327HIGH7.2Hardcoded credentials in the Akuvox R50P VoIP phone 50.0.6.156 allow an attacker to get access to the device via telnet....
CVE-2019-1010224Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2018-19802. Reason: This candidate is a reservation d...
CVE-2019-1010223Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2018-19800. Reason: This candidate is a reservation d...
CVE-2019-1010222Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2018-19801. Reason: This candidate is a reservation d...
CVE-2019-1010220tcpdump.org tcpdump 4.9.2 is affected by: CWE-126: Buffer Over-read. The impact is: May expose Saved Frame Pointer, Retu...
CVE-2019-1010218HIGH7.5Cherokee Webserver Latest Cherokee Web server Upto Version 1.2.103 (Current stable) is affected by: Buffer Overflow - CW...

Check if your code is affected by 2019 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now