2019 CVE Vulnerabilities
17,623 CVEs published in 2019.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2019-3938 | HIGH | 7.8 | 0.3% | Apr 30, 2019 | Crestron AM-100 with firmware 1.6.0.2 and AM-101 with firmware 2.7.0.2 stores usernames, passwords, and other configurat... |
| CVE-2019-3937 | HIGH | 7.8 | 0.3% | Apr 30, 2019 | Crestron AM-100 with firmware 1.6.0.2 and AM-101 with firmware 2.7.0.2 stores usernames, passwords, slideshow passcode, ... |
| CVE-2019-3936 | HIGH | 7.5 | 2.1% | Apr 30, 2019 | Crestron AM-100 with firmware 1.6.0.2 and AM-101 with firmware 2.7.0.2 is vulnerable to denial of service via a crafted ... |
| CVE-2019-3935 | CRITICAL | 9.1 | 3.3% | Apr 30, 2019 | Crestron AM-100 with firmware 1.6.0.2 and AM-101 with firmware 2.7.0.2 allows anyone to act as a moderator to a slide sh... |
| CVE-2019-3934 | MEDIUM | 5.3 | 7.7% | Apr 30, 2019 | Crestron AM-100 with firmware 1.6.0.2 and AM-101 with firmware 2.7.0.2 allows anyone to bypass the presentation code sen... |
| CVE-2019-3933 | MEDIUM | 5.3 | 5.9% | Apr 30, 2019 | Crestron AM-100 with firmware 1.6.0.2 and AM-101 with firmware 2.7.0.2 allows anyone to bypass the presentation code sim... |
| CVE-2019-3932 | CRITICAL | 9.8 | 36.3% | Apr 30, 2019 | Crestron AM-100 with firmware 1.6.0.2 and AM-101 with firmware 2.7.0.2 are vulnerable to authentication bypass due to a ... |
| CVE-2019-3931 | HIGH | 8.8 | 5.9% | Apr 30, 2019 | Crestron AM-100 with firmware 1.6.0.2 and AM-101 with firmware 2.7.0.2 are vulnerable to argumention injection to the cu... |
| CVE-2019-3930 | CRITICAL | 9.8 | 7.0% | Apr 30, 2019 | The Crestron AM-100 firmware 1.6.0.2, Crestron AM-101 firmware 2.7.0.1, Barco wePresent WiPG-1000P firmware 2.3.0.10, Ba... |
| CVE-2019-3929 | CRITICAL | 9.8 | 99.0% | Apr 30, 2019 | The Crestron AM-100 firmware 1.6.0.2, Crestron AM-101 firmware 2.7.0.1, Barco wePresent WiPG-1000P firmware 2.3.0.10, Ba... |
| CVE-2019-3928 | MEDIUM | 5.3 | 1.8% | Apr 30, 2019 | Crestron AM-100 with firmware 1.6.0.2 and AM-101 with firmware 2.7.0.2 allow any user to obtain the presentation passcod... |
| CVE-2019-3927 | CRITICAL | 9.8 | 2.2% | Apr 30, 2019 | Crestron AM-100 with firmware 1.6.0.2 and AM-101 with firmware 2.7.0.2 anyone can change the administrator and moderator... |
| CVE-2019-3926 | CRITICAL | 9.8 | 6.9% | Apr 30, 2019 | Crestron AM-100 with firmware 1.6.0.2 and AM-101 with firmware 2.7.0.2 are vulnerable to command injection via SNMP OID ... |
| CVE-2019-3925 | CRITICAL | 9.8 | 6.9% | Apr 30, 2019 | Crestron AM-100 with firmware 1.6.0.2 and AM-101 with firmware 2.7.0.2 are vulnerable to command injection via SNMP OID ... |
| CVE-2019-11626 | — | — | 1.3% | Apr 30, 2019 | routers/ajaxRouter.php in doorGets 7.0 has a web site physical path leakage vulnerability, as demonstrated by an ajax/in... |
| CVE-2019-11625 | — | — | 1.2% | Apr 30, 2019 | doorGets 7.0 has a SQL injection vulnerability in /doorgets/app/requests/user/emailingRequest.php. A remote background a... |
| CVE-2019-11624 | — | — | 1.6% | Apr 30, 2019 | doorGets 7.0 has an arbitrary file deletion vulnerability in /doorgets/app/requests/user/configurationRequest.php. A rem... |
| CVE-2019-11623 | — | — | 1.2% | Apr 30, 2019 | doorGets 7.0 has a SQL injection vulnerability in /doorgets/app/requests/user/configurationRequest.php when action=sitew... |
| CVE-2019-11622 | — | — | 1.2% | Apr 30, 2019 | doorGets 7.0 has a SQL injection vulnerability in /doorgets/app/requests/user/modulecategoryRequest.php. A remote backgr... |
| CVE-2019-11621 | — | — | 1.2% | Apr 30, 2019 | doorGets 7.0 has a SQL injection vulnerability in /doorgets/app/requests/user/configurationRequest.php when action=netwo... |
| CVE-2019-11620 | — | — | 1.2% | Apr 30, 2019 | doorGets 7.0 has a SQL injection vulnerability in /doorgets/app/requests/user/modulecategoryRequest.php. A remote backgr... |
| CVE-2019-11619 | — | — | 1.2% | Apr 30, 2019 | doorGets 7.0 has a SQL injection vulnerability in /doorgets/app/requests/user/configurationRequest.php when action=analy... |
| CVE-2019-11618 | — | — | 2.3% | Apr 30, 2019 | doorGets 7.0 has a default administrator credential vulnerability. A remote attacker can use this vulnerability to gain ... |
| CVE-2019-11617 | — | — | 0.8% | Apr 30, 2019 | doorGets 7.0 has a CSRF vulnerability in /doorgets/app/requests/user/configurationRequest.php. A remote attacker can exp... |
| CVE-2019-11616 | — | — | 2.4% | Apr 30, 2019 | doorGets 7.0 has a sensitive information disclosure vulnerability in /setup/temp/admin.php and /setup/temp/database.php.... |
Check if your code is affected by 2019 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now