2019 CVE Vulnerabilities
17,623 CVEs published in 2019.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2019-11552 | HIGH | 7 | 0.5% | Jul 19, 2019 | Code42 Enterprise and Crashplan for Small Business Client version 6.7 before 6.7.5, 6.8 before 6.8.8, and 6.9 before 6.9... |
| CVE-2019-1010151 | — | — | 2.0% | Jul 19, 2019 | zzcms zzmcms 8.3 and earlier is affected by: File Delete to getshell. The impact is: getshell. The component is: /user/p... |
| CVE-2019-13648 | — | — | 0.6% | Jul 19, 2019 | In the Linux kernel through 5.2.1 on the powerpc platform, when hardware transactional memory is disabled, a local user ... |
| CVE-2019-13978 | — | — | 1.5% | Jul 19, 2019 | Ovidentia 8.4.3 has SQL Injection via the id parameter in an index.php?tg=delegat&idx=mem request. |
| CVE-2019-13977 | — | — | 1.5% | Jul 19, 2019 | index.php in Ovidentia 8.4.3 has XSS via tg=groups, tg=maildoms&idx=create&userid=0&bgrp=y, tg=delegat, tg=site&idx=crea... |
| CVE-2019-13974 | — | — | 0.6% | Jul 19, 2019 | LayerBB 1.1.3 allows conversations.php/cmd/new CSRF. |
| CVE-2019-13973 | — | — | 1.8% | Jul 19, 2019 | LayerBB 1.1.3 allows admin/general.php arbitrary file upload because the custom_logo filename suffix is not restricted, ... |
| CVE-2019-13972 | — | — | 0.9% | Jul 19, 2019 | LayerBB 1.1.3 allows XSS via the application/commands/new.php pm_title variable, a related issue to CVE-2019-17997. |
| CVE-2019-13971 | — | — | 0.8% | Jul 19, 2019 | OTCMS 3.81 allows XSS via the mode parameter in an apiRun.php?mudi=autoRun request. |
| CVE-2019-13970 | — | — | 1.9% | Jul 19, 2019 | In antSword before 2.1.0, self-XSS in the database configuration leads to code execution via modules/database/asp/index.... |
| CVE-2019-13969 | — | — | 1.3% | Jul 19, 2019 | Metinfo 6.x allows SQL Injection via the id parameter in an admin/index.php?n=ui_set&m=admin&c=index&a=doget_text_conten... |
| CVE-2019-7963 | — | — | 2.9% | Jul 18, 2019 | Adobe Bridge CC version 9.0.2 and earlier versions have an out of bound read vulnerability. Successful exploitation coul... |
| CVE-2019-7956 | — | — | 3.3% | Jul 18, 2019 | Adobe Dreamweaver direct download installer versions 19.0 and below, 18.0 and below have an Insecure Library Loading (DL... |
| CVE-2019-7955 | — | — | 2.1% | Jul 18, 2019 | Adobe Experience Manager version 6.4 and ealier have a Reflected Cross-site Scripting vulnerability. Successful exploita... |
| CVE-2019-7954 | — | — | 1.7% | Jul 18, 2019 | Adobe Experience Manager version 6.4 and ealier have a Stored Cross-site Scripting vulnerability. Successful exploitatio... |
| CVE-2019-7953 | — | — | 2.8% | Jul 18, 2019 | Adobe Experience Manager version 6.4 and ealier have a Cross-Site Request Forgery vulnerability. Successful exploitation... |
| CVE-2019-7941 | — | — | 3.1% | Jul 18, 2019 | Adobe Campaign Classic version 18.10.5-8984 and earlier versions have an Information Exposure Through an Error Message v... |
| CVE-2019-7850 | — | — | 5.8% | Jul 18, 2019 | Adobe Campaign Classic version 18.10.5-8984 and earlier versions have a Command injection vulnerability. Successful expl... |
| CVE-2019-7848 | — | — | 3.1% | Jul 18, 2019 | Adobe Campaign Classic version 18.10.5-8984 and earlier versions have an Inadequate access control vulnerability. Succes... |
| CVE-2019-7847 | — | — | 3.3% | Jul 18, 2019 | Adobe Campaign Classic version 18.10.5-8984 and earlier versions have an Improper Restriction of XML External Entity Ref... |
| CVE-2019-7846 | — | — | 3.1% | Jul 18, 2019 | Adobe Campaign Classic version 18.10.5-8984 and earlier versions have an Improper error handling vulnerability. Successf... |
| CVE-2019-7843 | — | — | 3.2% | Jul 18, 2019 | Adobe Campaign Classic version 18.10.5-8984 and earlier versions have an Insufficient input validation vulnerability. Su... |
| CVE-2019-13962 | CRITICAL | 9.8 | 3.6% | Jul 18, 2019 | lavc_CopyPicture in modules/codec/avcodec/video.c in VideoLAN VLC media player through 3.0.7 has a heap-based buffer ove... |
| CVE-2019-13961 | — | — | 2.3% | Jul 18, 2019 | A CSRF vulnerability was found in flatCore before 1.5, leading to the upload of arbitrary .php files via acp/core/files.... |
| CVE-2019-8286 | — | — | 2.7% | Jul 18, 2019 | Information Disclosure in Kaspersky Anti-Virus, Kaspersky Internet Security, Kaspersky Total Security versions up to 201... |
Check if your code is affected by 2019 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now