2019 CVE Vulnerabilities

17,623 CVEs published in 2019.

CVE IDSeverityCVSSDescription
CVE-2019-5394The HPE Nonstop Maintenance Entity family of products are vulnerable to local disclosure of information, such as system ...
CVE-2019-12276A Path Traversal vulnerability in Controllers/LetsEncryptController.cs in LetsEncryptController in GrandNode 4.40 allows...
CVE-2019-12196A SQL injection vulnerability in /client/api/json/v2/nfareports/compareReport in Zoho ManageEngine NetFlow Analyzer 12.3...
CVE-2019-11988A Remote Unauthorized Access vulnerability was identified in HPE Smart Update Manager (SUM) earlier than version 8.3.5.
CVE-2019-11987A security vulnerability in HPE Smart Update Manager (SUM) prior to v8.4 could allow local unauthorized elevation of pri...
CVE-2019-11226CMS Made Simple 2.2.10 has XSS via the m1_name parameter in "Add Article" under Content -> Content Manager -> News.
CVE-2019-9642An issue was discovered in proxy.php in pydio-core in Pydio through 8.2.2. Through an unauthenticated request, it possib...
CVE-2019-9548Citrix Application Delivery Management (ADM) 12.1.x before 12.1.50.33 has Incorrect Access Control.
CVE-2019-1882MEDIUM5.4A vulnerability in Cisco Industrial Network Director could allow an authenticated, remote attacker to conduct stored cro...
CVE-2019-1881MEDIUM4.7A vulnerability in the web-based management interface of Cisco Industrial Network Director (IND) could allow an unauthen...
CVE-2019-1880MEDIUM4.4A vulnerability in the BIOS upgrade utility of Cisco Unified Computing System (UCS) C-Series Rack Servers could allow an...
CVE-2019-1872MEDIUM5.3A vulnerability in Cisco TelePresence Video Communication Server (VCS) and Cisco Expressway Series software could allow ...
CVE-2019-1870MEDIUM6.1A vulnerability in the web-based management interface of Cisco Enterprise Chat and Email (ECE) Center could allow an una...
CVE-2019-1868HIGH7.5A vulnerability in the web-based management interface of Cisco Webex Meetings Server could allow an unauthenticated, rem...
CVE-2019-1861HIGH7.2A vulnerability in the software update feature of Cisco Industrial Network Director could allow an authenticated, remote...
CVE-2019-1845HIGH8.6A vulnerability in the authentication service of the Cisco Unified Communications Manager IM and Presence (Unified CM IM...
CVE-2019-1842MEDIUM5.4A vulnerability in the Secure Shell (SSH) authentication function of Cisco IOS XR Software could allow an authenticated,...
CVE-2019-12555In SweetScape 010 Editor 9.0.1, improper validation of arguments in the internal implementation of the SubStr function (...
CVE-2019-12554In SweetScape 010 Editor 9.0.1, improper validation of arguments in the internal implementation of the WSubStr function ...
CVE-2019-12553In SweetScape 010 Editor 9.0.1, improper validation of arguments in the internal implementation of the StrCat function (...
CVE-2019-11983A remote buffer overflow vulnerability was identified in HPE Integrated Lights-Out 4 (iLO 4) earlier than v2.61b for Gen...
CVE-2019-11982A remote cross site scripting vulnerability was identified in HPE Integrated Lights-Out 4 (iLO 4) earlier than v2.61b fo...
CVE-2019-9730Incorrect access control in the CxUtilSvc component of the Synaptics Sound Device drivers prior to version 2.29 allows a...
CVE-2019-9673Freenet 1483 has a MIME type bypass that allows arbitrary JavaScript execution via a crafted Freenet URI.
CVE-2019-9647Gila CMS 1.9.1 has XSS.

Check if your code is affected by 2019 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now