2019 CVE Vulnerabilities
17,619 CVEs published in 2019.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2019-3686 | MEDIUM | 6.1 | 0.6% | Jan 17, 2020 | openQA before commit c172e8883d8f32fced5e02f9b6faaacc913df27b was vulnerable to XSS in the distri and version parameter.... |
| CVE-2019-19802 | MEDIUM | 6.5 | 0.8% | Jan 17, 2020 | In Gallagher Command Centre Server v8.10 prior to v8.10.1134(MR4), v8.00 prior to v8.00.1161(MR5), v7.90 prior to v7.90.... |
| CVE-2019-19801 | MEDIUM | 5.5 | 0.3% | Jan 17, 2020 | In Gallagher Command Centre Server versions of v8.10 prior to v8.10.1134(MR4), v8.00 prior to v8.00.1161(MR5), v7.90 pri... |
| CVE-2019-3997 | MEDIUM | 4.6 | 0.4% | Jan 16, 2020 | Authentication bypass using an alternate path or channel in SimpliSafe SS3 firmware 1.0-1.3 allows a local, unauthentica... |
| CVE-2019-11998 | MEDIUM | 5.5 | 0.8% | Jan 16, 2020 | HPE Superdome Flex Server is vulnerable to multiple remote vulnerabilities via improper input validation of administrato... |
| CVE-2019-11997 | MEDIUM | 6.1 | 1.0% | Jan 16, 2020 | A potential security vulnerability has been identified in HPE enhanced Internet Usage Manager (eIUM) versions 8.3 and 9.... |
| CVE-2019-17573 | MEDIUM | 6.1 | 7.1% | Jan 16, 2020 | By default, Apache CXF creates a /services page containing a listing of the available endpoint names and addresses. This... |
| CVE-2019-19278 | MEDIUM | 6.8 | 0.3% | Jan 16, 2020 | A vulnerability has been identified in SINAMICS PERFECT HARMONY GH180 Drives MLFB 6SR32..-.....-.... MLFB 6SR4...-.....-... |
| CVE-2019-18282 | MEDIUM | 5.3 | 2.6% | Jan 16, 2020 | The flow_dissector feature in the Linux kernel 4.3 through 5.x before 5.3.10 has a device tracking vulnerability, aka CI... |
| CVE-2019-19859 | MEDIUM | 5.3 | 0.8% | Jan 15, 2020 | An issue was discovered in Serpico (aka SimplE RePort wrIting and CollaboratiOn tool) 1.3.0. The Add Collaborator allows... |
| CVE-2019-19858 | MEDIUM | 4.8 | 0.6% | Jan 15, 2020 | An issue was discovered in Serpico (aka SimplE RePort wrIting and CollaboratiOn tool) 1.3.0. admin/add_user/UID allows s... |
| CVE-2019-19857 | MEDIUM | 6.5 | 0.9% | Jan 15, 2020 | An issue was discovered in Serpico (aka SimplE RePort wrIting and CollaboratiOn tool) 1.3.0. An admin can change their p... |
| CVE-2019-19856 | MEDIUM | 4.8 | 0.7% | Jan 15, 2020 | An issue was discovered in Serpico (aka SimplE RePort wrIting and CollaboratiOn tool) 1.3.0. The User Type on the admin/... |
| CVE-2019-19855 | MEDIUM | 4.8 | 0.7% | Jan 15, 2020 | An issue was discovered in Serpico (aka SimplE RePort wrIting and CollaboratiOn tool) 1.3.0. admin/list_user allows stor... |
| CVE-2019-18275 | MEDIUM | 6.5 | 1.1% | Jan 15, 2020 | OSIsoft PI Vision, All versions of PI Vision prior to 2019. The affected product is vulnerable to an improper access con... |
| CVE-2019-18273 | MEDIUM | 4.8 | 0.7% | Jan 15, 2020 | OSIsoft PI Vision, PI Vision 2017 R2 and PI Vision 2017 R2 SP1. The affected product is vulnerable to cross-site scripti... |
| CVE-2019-18244 | MEDIUM | 4.7 | 0.3% | Jan 15, 2020 | In OSIsoft PI System multiple products and versions, a local attacker could view sensitive information in log files when... |
| CVE-2019-15961 | MEDIUM | 6.5 | 3.1% | Jan 15, 2020 | A vulnerability in the email parsing module Clam AntiVirus (ClamAV) Software versions 0.102.0, 0.101.4 and prior could a... |
| CVE-2019-16467 | MEDIUM | 6.1 | 1.5% | Jan 15, 2020 | Adobe Experience Manager versions 6.5, 6.4, 6.3, 6.2, 6.1, and 6.0 have a reflected cross-site scripting vulnerability. ... |
| CVE-2019-16466 | MEDIUM | 6.1 | 1.5% | Jan 15, 2020 | Adobe Experience Manager versions 6.5, 6.4, 6.3, 6.2, 6.1, and 6.0 have a reflected cross-site scripting vulnerability. ... |
| CVE-2019-13722 | MEDIUM | 6.5 | 1.0% | Jan 14, 2020 | Inappropriate implementation in WebRTC in Google Chrome prior to 79.0.3945.79 allowed a remote attacker to potentially e... |
| CVE-2019-12398 | MEDIUM | 4.8 | 1.9% | Jan 14, 2020 | In Apache Airflow before 1.10.5 when running with the "classic" UI, a malicious admin user could edit the state of objec... |
| CVE-2019-20144 | MEDIUM | 4.3 | 0.7% | Jan 13, 2020 | An issue was discovered in GitLab Community Edition (CE) and Enterprise Edition (EE) 10.8 through 12.6.1. It has Incorre... |
| CVE-2019-20143 | MEDIUM | 5.3 | 0.9% | Jan 13, 2020 | An issue was discovered in GitLab Community Edition (CE) and Enterprise Edition (EE) 12.6. It has Incorrect Access Contr... |
| CVE-2019-20142 | MEDIUM | 4.3 | 0.9% | Jan 13, 2020 | An issue was discovered in GitLab Community Edition (CE) and Enterprise Edition (EE) 12.3 through 12.6.1. It allows Deni... |
Check if your code is affected by 2019 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now