2019 CVE Vulnerabilities
17,623 CVEs published in 2019.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2019-5394 | — | — | 0.3% | Jun 5, 2019 | The HPE Nonstop Maintenance Entity family of products are vulnerable to local disclosure of information, such as system ... |
| CVE-2019-12276 | — | — | 53.7% | Jun 5, 2019 | A Path Traversal vulnerability in Controllers/LetsEncryptController.cs in LetsEncryptController in GrandNode 4.40 allows... |
| CVE-2019-12196 | — | — | 69.1% | Jun 5, 2019 | A SQL injection vulnerability in /client/api/json/v2/nfareports/compareReport in Zoho ManageEngine NetFlow Analyzer 12.3... |
| CVE-2019-11988 | — | — | 1.4% | Jun 5, 2019 | A Remote Unauthorized Access vulnerability was identified in HPE Smart Update Manager (SUM) earlier than version 8.3.5. |
| CVE-2019-11987 | — | — | 0.3% | Jun 5, 2019 | A security vulnerability in HPE Smart Update Manager (SUM) prior to v8.4 could allow local unauthorized elevation of pri... |
| CVE-2019-11226 | — | — | 0.9% | Jun 5, 2019 | CMS Made Simple 2.2.10 has XSS via the m1_name parameter in "Add Article" under Content -> Content Manager -> News. |
| CVE-2019-9642 | — | — | 2.4% | Jun 5, 2019 | An issue was discovered in proxy.php in pydio-core in Pydio through 8.2.2. Through an unauthenticated request, it possib... |
| CVE-2019-9548 | — | — | 1.5% | Jun 5, 2019 | Citrix Application Delivery Management (ADM) 12.1.x before 12.1.50.33 has Incorrect Access Control. |
| CVE-2019-1882 | MEDIUM | 5.4 | 0.9% | Jun 5, 2019 | A vulnerability in Cisco Industrial Network Director could allow an authenticated, remote attacker to conduct stored cro... |
| CVE-2019-1881 | MEDIUM | 4.7 | 1.3% | Jun 5, 2019 | A vulnerability in the web-based management interface of Cisco Industrial Network Director (IND) could allow an unauthen... |
| CVE-2019-1880 | MEDIUM | 4.4 | 0.2% | Jun 5, 2019 | A vulnerability in the BIOS upgrade utility of Cisco Unified Computing System (UCS) C-Series Rack Servers could allow an... |
| CVE-2019-1872 | MEDIUM | 5.3 | 1.5% | Jun 5, 2019 | A vulnerability in Cisco TelePresence Video Communication Server (VCS) and Cisco Expressway Series software could allow ... |
| CVE-2019-1870 | MEDIUM | 6.1 | 1.2% | Jun 5, 2019 | A vulnerability in the web-based management interface of Cisco Enterprise Chat and Email (ECE) Center could allow an una... |
| CVE-2019-1868 | HIGH | 7.5 | 2.1% | Jun 5, 2019 | A vulnerability in the web-based management interface of Cisco Webex Meetings Server could allow an unauthenticated, rem... |
| CVE-2019-1861 | HIGH | 7.2 | 4.4% | Jun 5, 2019 | A vulnerability in the software update feature of Cisco Industrial Network Director could allow an authenticated, remote... |
| CVE-2019-1845 | HIGH | 8.6 | 4.6% | Jun 5, 2019 | A vulnerability in the authentication service of the Cisco Unified Communications Manager IM and Presence (Unified CM IM... |
| CVE-2019-1842 | MEDIUM | 5.4 | 1.2% | Jun 5, 2019 | A vulnerability in the Secure Shell (SSH) authentication function of Cisco IOS XR Software could allow an authenticated,... |
| CVE-2019-12555 | — | — | 1.2% | Jun 5, 2019 | In SweetScape 010 Editor 9.0.1, improper validation of arguments in the internal implementation of the SubStr function (... |
| CVE-2019-12554 | — | — | 1.2% | Jun 5, 2019 | In SweetScape 010 Editor 9.0.1, improper validation of arguments in the internal implementation of the WSubStr function ... |
| CVE-2019-12553 | — | — | 2.4% | Jun 5, 2019 | In SweetScape 010 Editor 9.0.1, improper validation of arguments in the internal implementation of the StrCat function (... |
| CVE-2019-11983 | — | — | 1.1% | Jun 5, 2019 | A remote buffer overflow vulnerability was identified in HPE Integrated Lights-Out 4 (iLO 4) earlier than v2.61b for Gen... |
| CVE-2019-11982 | — | — | 2.1% | Jun 5, 2019 | A remote cross site scripting vulnerability was identified in HPE Integrated Lights-Out 4 (iLO 4) earlier than v2.61b fo... |
| CVE-2019-9730 | — | — | 1.0% | Jun 5, 2019 | Incorrect access control in the CxUtilSvc component of the Synaptics Sound Device drivers prior to version 2.29 allows a... |
| CVE-2019-9673 | — | — | 4.0% | Jun 5, 2019 | Freenet 1483 has a MIME type bypass that allows arbitrary JavaScript execution via a crafted Freenet URI. |
| CVE-2019-9647 | — | — | 2.3% | Jun 5, 2019 | Gila CMS 1.9.1 has XSS. |
Check if your code is affected by 2019 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now