2019 CVE Vulnerabilities

17,623 CVEs published in 2019.

CVE IDSeverityCVSSDescription
CVE-2019-3973Comodo Antivirus versions 11.0.0.6582 and below are vulnerable to Denial of Service affecting CmdGuard.sys via its filte...
CVE-2019-3972Comodo Antivirus versions 12.0.0.6810 and below are vulnerable to Denial of Service affecting CmdAgent.exe via an unprot...
CVE-2019-3971Comodo Antivirus versions up to 12.0.0.6810 are vulnerable to a local Denial of Service affecting CmdVirth.exe via its L...
CVE-2019-3970Comodo Antivirus versions up to 12.0.0.6810 are vulnerable to Arbitrary File Write due to Cavwp.exe handling of Comodo's...
CVE-2019-3969Comodo Antivirus versions up to 12.0.0.6810 are vulnerable to Local Privilege Escalation due to CmdAgent's handling of C...
CVE-2019-1943MEDIUM4.7A vulnerability in the web interface of Cisco Small Business 200, 300, and 500 Series Switches software could allow an u...
CVE-2019-1942MEDIUM4.3A vulnerability in the sponsor portal web interface for Cisco Identity Services Engine (ISE) could allow an authenticate...
CVE-2019-1941MEDIUM6.1A vulnerability in the web-based management interface of Cisco Identity Services Engine (ISE) could allow an unauthentic...
CVE-2019-1940MEDIUM5.9A vulnerability in the Web Services Management Agent (WSMA) feature of Cisco Industrial Network Director (IND) could all...
CVE-2019-1923MEDIUM6.6A vulnerability in Cisco Small Business SPA500 Series IP Phones could allow a physically proximate attacker to execute a...
CVE-2019-1920HIGH7.4A vulnerability in the 802.11r Fast Transition (FT) implementation for Cisco IOS Access Points (APs) Software could allo...
CVE-2019-1919HIGH8.4A vulnerability in the Cisco FindIT Network Management Software virtual machine (VM) images could allow an unauthenticat...
CVE-2019-1917CRITICAL9.1A vulnerability in the REST API interface of Cisco Vision Dynamic Signage Director could allow an unauthenticated, remot...
CVE-2019-13637In LogMeIn join.me before 3.16.0.5505, an attacker could execute arbitrary commands on a targeted system. This vulnerabi...
CVE-2019-13636In GNU patch through 2.7.6, the following of symlinks is mishandled in certain cases other than input files. This affect...
CVE-2019-12914Redbrick Shift through 3.4.3 allows an attacker to extract authentication tokens of services (such as Gmail, Outlook, et...
CVE-2019-12913Redbrick Shift through 3.4.3 allows an attacker to extract emails of services (such as Gmail, Outlook, etc.) used in the...
CVE-2019-12912Redbrick Shift through 3.4.3 allows an attacker to extract emails of services (such as Gmail, Outlook, etc.) used in the...
CVE-2019-12911Redbrick Shift through 3.4.3 allows an attacker to extract authentication tokens of services (such as Gmail, Outlook, et...
CVE-2019-11772In Eclipse OpenJ9 prior to 0.15, the String.getBytes(int, int, byte[], int) method does not verify that the provided byt...
CVE-2019-11771HIGH7.8AIX builds of Eclipse OpenJ9 before 0.15.0 contain unused RPATHs which may facilitate code injection and privilege eleva...
CVE-2019-1010287Timesheet Next Gen 1.5.3 and earlier is affected by: Cross Site Scripting (XSS). The impact is: Allows an attacker to ex...
CVE-2019-1010283HIGH7.5Univention Corporate Server univention-directory-notifier 12.0.1-3 and earlier is affected by: CWE-213: Intentional Info...
CVE-2019-1010275helm Before 2.7.2 is affected by: CWE-295: Improper Certificate Validation. The impact is: Unauthorized clients could co...
CVE-2019-1010266MEDIUM6.5lodash prior to 4.17.11 is affected by: CWE-400: Uncontrolled Resource Consumption. The impact is: Denial of service. Th...

Check if your code is affected by 2019 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now