2019 CVE Vulnerabilities

17,623 CVEs published in 2019.

CVE IDSeverityCVSSDescription
CVE-2019-11036CRITICAL9.1When processing certain files, PHP EXIF extension in versions 7.1.x below 7.1.29, 7.2.x below 7.2.18 and 7.3.x below 7.3...
CVE-2019-6613MEDIUM5.3On BIG-IP 13.0.0-13.1.1.4, 12.1.0-12.1.4, 11.6.1-11.6.3.4, and 11.5.2-11.5.8, SNMP may expose sensitive configuration ob...
CVE-2019-6612HIGH7.5On BIG-IP 14.0.0-14.1.0.1, 13.0.0-13.1.1.4, 12.1.0-12.1.4, 11.6.1-11.6.3.4, and 11.5.2-11.5.8, DNS query TCP connections...
CVE-2019-6611HIGH7.5When BIG-IP 14.0.0-14.1.0.1, 13.0.0-13.1.1.4, 12.1.0-12.1.4, 11.6.1-11.6.3.4, and 11.5.2-11.5.8 are processing certain r...
CVE-2019-1859HIGH7.2A vulnerability in the Secure Shell (SSH) authentication process of Cisco Small Business Switches software could allow a...
CVE-2019-1857MEDIUM6.1A vulnerability in the web-based management interface of Cisco HyperFlex HX-Series could allow an unauthenticated, remot...
CVE-2019-1856MEDIUM6.1A vulnerability in the web-based management interface of Cisco Prime Collaboration Assurance (PCA) could allow an unauth...
CVE-2019-1854MEDIUM4.1A vulnerability in the management web interface of Cisco Expressway Series could allow an authenticated, remote attacker...
CVE-2019-1852MEDIUM6.1A vulnerability in the web-based management interface of Cisco Prime Network Registrar could allow an unauthenticated, r...
CVE-2019-1844MEDIUM5.3A vulnerability in certain attachment detection mechanisms of the Cisco Email Security Appliance (ESA) could allow an un...
CVE-2019-1838MEDIUM5.4A vulnerability in the web-based management interface of Cisco Application Policy Infrastructure Controller (APIC) could...
CVE-2019-1836HIGH7.1A vulnerability in the system shell for Cisco Nexus 9000 Series Fabric Switches in Application Centric Infrastructure (A...
CVE-2019-1817HIGH7.5A vulnerability in the web proxy functionality of Cisco AsyncOS Software for Cisco Web Security Appliance could allow an...
CVE-2019-1816HIGH7.8A vulnerability in the log subscription subsystem of the Cisco Web Security Appliance (WSA) could allow an authenticated...
CVE-2019-1807HIGH7.6A vulnerability in the session management functionality of the web UI for the Cisco Umbrella Dashboard could allow an au...
CVE-2019-1804CRITICAL9.8A vulnerability in the SSH key management for the Cisco Nexus 9000 Series Application Centric Infrastructure (ACI) Mode ...
CVE-2019-1803MEDIUM6.7A vulnerability in the filesystem management for the Cisco Nexus 9000 Series Application Centric Infrastructure (ACI) Mo...
CVE-2019-1724HIGH8.8A vulnerability in the session management functionality of the web-based interface for Cisco Small Business RV320 and RV...
CVE-2019-1715HIGH7.5A vulnerability in the Deterministic Random Bit Generator (DRBG), also known as Pseudorandom Number Generator (PRNG), us...
CVE-2019-1714HIGH8.6A vulnerability in the implementation of Security Assertion Markup Language (SAML) 2.0 Single Sign-On (SSO) for Clientle...
CVE-2019-1713HIGH8.1A vulnerability in the web-based management interface of Cisco Adaptive Security Appliance (ASA) Software could allow an...
CVE-2019-1709HIGH7.8A vulnerability in the CLI of Cisco Firepower Threat Defense (FTD) Software could allow an authenticated, local attacker...
CVE-2019-1708HIGH8.6A vulnerability in the Internet Key Exchange Version 2 Mobility and Multihoming Protocol (MOBIKE) feature for the Cisco ...
CVE-2019-1706HIGH8.6A vulnerability in the software cryptography module of the Cisco Adaptive Security Virtual Appliance (ASAv) and Firepowe...
CVE-2019-1705MEDIUM5.3A vulnerability in the remote access VPN session manager of Cisco Adaptive Security Appliance (ASA) Software could allow...

Check if your code is affected by 2019 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now