2019 CVE Vulnerabilities
17,623 CVEs published in 2019.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2019-3973 | — | — | 0.4% | Jul 17, 2019 | Comodo Antivirus versions 11.0.0.6582 and below are vulnerable to Denial of Service affecting CmdGuard.sys via its filte... |
| CVE-2019-3972 | — | — | 0.4% | Jul 17, 2019 | Comodo Antivirus versions 12.0.0.6810 and below are vulnerable to Denial of Service affecting CmdAgent.exe via an unprot... |
| CVE-2019-3971 | — | — | 0.4% | Jul 17, 2019 | Comodo Antivirus versions up to 12.0.0.6810 are vulnerable to a local Denial of Service affecting CmdVirth.exe via its L... |
| CVE-2019-3970 | — | — | 0.4% | Jul 17, 2019 | Comodo Antivirus versions up to 12.0.0.6810 are vulnerable to Arbitrary File Write due to Cavwp.exe handling of Comodo's... |
| CVE-2019-3969 | — | — | 0.6% | Jul 17, 2019 | Comodo Antivirus versions up to 12.0.0.6810 are vulnerable to Local Privilege Escalation due to CmdAgent's handling of C... |
| CVE-2019-1943 | MEDIUM | 4.7 | 10.5% | Jul 17, 2019 | A vulnerability in the web interface of Cisco Small Business 200, 300, and 500 Series Switches software could allow an u... |
| CVE-2019-1942 | MEDIUM | 4.3 | 1.2% | Jul 17, 2019 | A vulnerability in the sponsor portal web interface for Cisco Identity Services Engine (ISE) could allow an authenticate... |
| CVE-2019-1941 | MEDIUM | 6.1 | 1.3% | Jul 17, 2019 | A vulnerability in the web-based management interface of Cisco Identity Services Engine (ISE) could allow an unauthentic... |
| CVE-2019-1940 | MEDIUM | 5.9 | 1.0% | Jul 17, 2019 | A vulnerability in the Web Services Management Agent (WSMA) feature of Cisco Industrial Network Director (IND) could all... |
| CVE-2019-1923 | MEDIUM | 6.6 | 0.5% | Jul 17, 2019 | A vulnerability in Cisco Small Business SPA500 Series IP Phones could allow a physically proximate attacker to execute a... |
| CVE-2019-1920 | HIGH | 7.4 | 0.8% | Jul 17, 2019 | A vulnerability in the 802.11r Fast Transition (FT) implementation for Cisco IOS Access Points (APs) Software could allo... |
| CVE-2019-1919 | HIGH | 8.4 | 0.3% | Jul 17, 2019 | A vulnerability in the Cisco FindIT Network Management Software virtual machine (VM) images could allow an unauthenticat... |
| CVE-2019-1917 | CRITICAL | 9.1 | 5.3% | Jul 17, 2019 | A vulnerability in the REST API interface of Cisco Vision Dynamic Signage Director could allow an unauthenticated, remot... |
| CVE-2019-13637 | — | — | 2.6% | Jul 17, 2019 | In LogMeIn join.me before 3.16.0.5505, an attacker could execute arbitrary commands on a targeted system. This vulnerabi... |
| CVE-2019-13636 | — | — | 3.9% | Jul 17, 2019 | In GNU patch through 2.7.6, the following of symlinks is mishandled in certain cases other than input files. This affect... |
| CVE-2019-12914 | — | — | 1.2% | Jul 17, 2019 | Redbrick Shift through 3.4.3 allows an attacker to extract authentication tokens of services (such as Gmail, Outlook, et... |
| CVE-2019-12913 | — | — | 0.4% | Jul 17, 2019 | Redbrick Shift through 3.4.3 allows an attacker to extract emails of services (such as Gmail, Outlook, etc.) used in the... |
| CVE-2019-12912 | — | — | 0.4% | Jul 17, 2019 | Redbrick Shift through 3.4.3 allows an attacker to extract emails of services (such as Gmail, Outlook, etc.) used in the... |
| CVE-2019-12911 | — | — | 1.2% | Jul 17, 2019 | Redbrick Shift through 3.4.3 allows an attacker to extract authentication tokens of services (such as Gmail, Outlook, et... |
| CVE-2019-11772 | — | — | 2.1% | Jul 17, 2019 | In Eclipse OpenJ9 prior to 0.15, the String.getBytes(int, int, byte[], int) method does not verify that the provided byt... |
| CVE-2019-11771 | HIGH | 7.8 | 0.4% | Jul 17, 2019 | AIX builds of Eclipse OpenJ9 before 0.15.0 contain unused RPATHs which may facilitate code injection and privilege eleva... |
| CVE-2019-1010287 | — | — | 4.3% | Jul 17, 2019 | Timesheet Next Gen 1.5.3 and earlier is affected by: Cross Site Scripting (XSS). The impact is: Allows an attacker to ex... |
| CVE-2019-1010283 | HIGH | 7.5 | 1.4% | Jul 17, 2019 | Univention Corporate Server univention-directory-notifier 12.0.1-3 and earlier is affected by: CWE-213: Intentional Info... |
| CVE-2019-1010275 | — | — | 1.4% | Jul 17, 2019 | helm Before 2.7.2 is affected by: CWE-295: Improper Certificate Validation. The impact is: Unauthorized clients could co... |
| CVE-2019-1010266 | MEDIUM | 6.5 | 3.1% | Jul 17, 2019 | lodash prior to 4.17.11 is affected by: CWE-400: Uncontrolled Resource Consumption. The impact is: Denial of service. Th... |
Check if your code is affected by 2019 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now