2019 CVE Vulnerabilities

17,623 CVEs published in 2019.

CVE IDSeverityCVSSDescription
CVE-2019-1729MEDIUM6A vulnerability in the CLI implementation of a specific command used for image maintenance for Cisco NX-OS Software coul...
CVE-2019-1728MEDIUM6.7A vulnerability in the Secure Configuration Validation functionality of Cisco FXOS Software and Cisco NX-OS Software cou...
CVE-2019-1727MEDIUM6.7A vulnerability in the Python scripting subsystem of Cisco NX-OS Software could allow an authenticated, local attacker t...
CVE-2019-1726HIGH7.8A vulnerability in the CLI of Cisco NX-OS Software could allow an authenticated, local attacker to access internal servi...
CVE-2019-1717HIGH7.5A vulnerability in the web-based management interface of Cisco Video Surveillance Manager could allow an unauthenticated...
CVE-2019-8936HIGH7.5NTP through 4.2.8p12 has a NULL Pointer Dereference.
CVE-2019-5598In FreeBSD 11.3-PRERELEASE before r345378, 12.0-STABLE before r345377, 11.2-RELEASE before 11.2-RELEASE-p10, and 12.0-RE...
CVE-2019-5597In FreeBSD 11.3-PRERELEASE and 12.0-STABLE before r347591, 11.2-RELEASE before 11.2-RELEASE-p10, and 12.0-RELEASE before...
CVE-2019-5526VMware Workstation (15.x before 15.1.0) contains a DLL hijacking issue because some DLL files are improperly loaded by t...
CVE-2019-3727MEDIUM6.4Dell EMC RecoverPoint versions prior to 5.1.3 and RecoverPoint for VMs versions prior to 5.2.0.2 contain an OS command i...
CVE-2019-3725CRITICAL9.8RSA Netwitness Platform versions prior to 11.2.1.1 and RSA Security Analytics versions prior to 10.6.6.1 are vulnerable ...
CVE-2019-3724MEDIUM6.5RSA Netwitness Platform versions prior to 11.2.1.1 is vulnerable to an Authorization Bypass vulnerability. A remote low ...
CVE-2019-3602MEDIUM4.8Cross Site Scripting (XSS) vulnerability in McAfee Network Security Manager (NSM) Prior to 9.1 Update 5 allows an authen...
CVE-2019-3586HIGH7.5Protection Mechanism Failure in the Firewall in McAfee Endpoint Security (ENS) 10.x prior to 10.6.1 May 2019 update allo...
CVE-2019-11833MEDIUM5.5fs/ext4/extents.c in the Linux kernel through 5.1.2 does not zero out the unused memory region in the extent tree block,...
CVE-2019-12101coap_decode_option in coap.c in LibNyoci 0.07.00rc1 mishandles certain packets with "Uri-Path: (null)" and consequently ...
CVE-2019-12099In PHP-Fusion 9.03.00, edit_profile.php allows remote authenticated users to execute arbitrary code because includes/dyn...
CVE-2019-11397GetFile.aspx in Rapid4 RapidFlows Enterprise Application Builder 4.5M.23 (when used with .NET Framework 4.5) allows Loca...
CVE-2019-11328HIGH8.8An issue was discovered in Singularity 3.1.0 to 3.2.0-rc2, a malicious user with local/network access to the host system...
CVE-2019-0301Under certain conditions, it is possible to request the modification of role or privilege assignments through SAP Identi...
CVE-2019-0298SAP E-Commerce (Business-to-Consumer) application does not sufficiently encode user-controlled inputs, resulting in Cros...
CVE-2019-0293Read of RFC destination does not always perform necessary authorization checks, resulting in escalation of privileges to...
CVE-2019-0291Under certain conditions Solution Manager, version 7.2, allows an attacker to access information which would otherwise b...
CVE-2019-0289Under certain conditions SAP BusinessObjects Business Intelligence platform (Analysis for OLAP), versions 4.2 and 4.3, a...
CVE-2019-0287Under certain conditions SAP BusinessObjects Business Intelligence platform (Central Management Server), versions 4.2 an...

Check if your code is affected by 2019 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now