2019 CVE Vulnerabilities
17,623 CVEs published in 2019.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2019-0130 | HIGH | 7.4 | 1.9% | Jun 13, 2019 | Reflected XSS in web interface for Intel(R) Accelerated Storage Manager in Intel(R) RSTe before version 5.5.0.2015 may a... |
| CVE-2019-0128 | HIGH | 7.8 | 0.5% | Jun 13, 2019 | Improper permissions in the installer for Intel(R) Chipset Device Software (INF Update Utility) before version 10.1.1.45... |
| CVE-2019-0315 | — | — | 1.4% | Jun 12, 2019 | Under certain conditions the PI Integration Builder Web UI of SAP NetWeaver Process Integration (versions: SAP_XIESR: 7.... |
| CVE-2019-0314 | — | — | 0.8% | Jun 12, 2019 | SAP Work Manager, versions: 6.3, 6.4, 6.5 and SAP Inventory Manager, version 4.3, allows an attacker to prevent legitima... |
| CVE-2019-0312 | — | — | 1.1% | Jun 12, 2019 | Several web pages provided SAP NetWeaver Process Integration (versions: SAP_XIESR: 7.10 to 7.11, 7.20, 7.30, 7.31, 7.40,... |
| CVE-2019-0311 | — | — | 0.8% | Jun 12, 2019 | Automotive Dealer Portal in SAP R/3 Enterprise Application (versions: 600, 602, 603, 604, 605, 606, 616, 617) does not s... |
| CVE-2019-7845 | HIGH | 8.8 | 5.5% | Jun 12, 2019 | Adobe Flash Player versions 32.0.0.192 and earlier, 32.0.0.192 and earlier, and 32.0.0.192 and earlier have an use after... |
| CVE-2019-7840 | — | — | 17.2% | Jun 12, 2019 | ColdFusion versions Update 3 and earlier, Update 10 and earlier, and Update 18 and earlier have a deserialization of unt... |
| CVE-2019-7839 | — | — | 44.1% | Jun 12, 2019 | ColdFusion versions Update 3 and earlier, Update 10 and earlier, and Update 18 and earlier have a command injection vuln... |
| CVE-2019-7838 | — | — | 17.4% | Jun 12, 2019 | ColdFusion versions Update 3 and earlier, Update 10 and earlier, and Update 18 and earlier have a file extension blackli... |
| CVE-2019-5442 | HIGH | 7.5 | 1.4% | Jun 12, 2019 | XML Entity Expansion (Billion Laughs Attack) on Pippo 1.12.0 results in Denial of Service.Entities are created recursive... |
| CVE-2019-10971 | — | — | 1.1% | Jun 12, 2019 | The application (Network Configurator for DeviceNet Safety 3.41 and prior) searches for resources by means of an untrust... |
| CVE-2019-9676 | — | — | 0.4% | Jun 12, 2019 | Buffer overflow vulnerability found in some Dahua IP Camera devices IPC-HFW1XXX,IPC-HDW1XXX,IPC-HFW2XXX Build before 201... |
| CVE-2019-3947 | — | — | 1.6% | Jun 12, 2019 | Fuji Electric V-Server before 6.0.33.0 stores database credentials in project files as plaintext. An attacker that can g... |
| CVE-2019-3946 | — | — | 2.3% | Jun 12, 2019 | Fuji Electric V-Server before 6.0.33.0 is vulnerable to denial of service via a crafted UDP message sent to port 8005. A... |
| CVE-2019-11269 | MEDIUM | 5.4 | 8.9% | Jun 12, 2019 | Spring Security OAuth versions 2.3 prior to 2.3.6, 2.2 prior to 2.2.5, 2.1 prior to 2.1.5, and 2.0 prior to 2.0.18, as w... |
| CVE-2019-0308 | — | — | 0.9% | Jun 12, 2019 | An authenticated attacker in SAP E-Commerce (Business-to-Consumer application), versions 7.3, 7.31, 7.32, 7.33, 7.54, ca... |
| CVE-2019-0307 | — | — | 2.1% | Jun 12, 2019 | Diagnostics Agent in Solution Manager, version 7.2, stores several credentials such as SLD user connection as well as So... |
| CVE-2019-0306 | — | — | 0.9% | Jun 12, 2019 | SAP HANA Extended Application Services (advanced model), version 1, allows authenticated low privileged XS Advanced Plat... |
| CVE-2019-0305 | — | — | 0.9% | Jun 12, 2019 | Java Server Pages (JSPs) provided by the SAP NetWeaver Process Integration (SAP_XIESR and SAP_XITOOL: 7.10 to 7.11, 7.20... |
| CVE-2019-0304 | — | — | 1.6% | Jun 12, 2019 | FTP Function of SAP NetWeaver AS ABAP Platform, versions- KRNL32NUC 7.21, 7.21EXT, 7.22, 7.22EXT, KRNL32UC 7.21, 7.21EXT... |
| CVE-2019-6584 | HIGH | 8.8 | 1.3% | Jun 12, 2019 | A vulnerability has been identified in SIEMENS LOGO!8 (6ED1052-xyyxx-0BA8 FS:01 to FS:06 / Firmware version V1.80.xx and... |
| CVE-2019-6582 | HIGH | 7.1 | 1.1% | Jun 12, 2019 | A vulnerability has been identified in Siveillance VMS 2017 R2 (All versions < V11.2a), Siveillance VMS 2018 R1 (All ver... |
| CVE-2019-6581 | HIGH | 8.8 | 1.3% | Jun 12, 2019 | A vulnerability has been identified in Siveillance VMS 2017 R2 (All versions < V11.2a), Siveillance VMS 2018 R1 (All ver... |
| CVE-2019-6580 | CRITICAL | 9.8 | 1.7% | Jun 12, 2019 | A vulnerability has been identified in Siveillance VMS 2017 R2 (All versions < V11.2a), Siveillance VMS 2018 R1 (All ver... |
Check if your code is affected by 2019 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now