2019 CVE Vulnerabilities
17,619 CVEs published in 2019.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2019-18615 | MEDIUM | 4.9 | 0.5% | Dec 19, 2019 | In CloudVision Portal (CVP) for all releases in the 2018.2 Train, under certain conditions, the application logs user pa... |
| CVE-2019-19903 | MEDIUM | 4.8 | 0.6% | Dec 19, 2019 | An issue was discovered in Backdrop CMS 1.14.x before 1.14.2. It doesn't sufficiently filter output when displaying file... |
| CVE-2019-19901 | MEDIUM | 4.8 | 0.6% | Dec 19, 2019 | An issue was discovered in Backdrop CMS 1.13.x before 1.13.5 and 1.14.x before 1.14.2. It doesn't sufficiently filter ou... |
| CVE-2019-19900 | MEDIUM | 4.8 | 0.6% | Dec 19, 2019 | An issue was discovered in Backdrop CMS 1.13.x before 1.13.5 and 1.14.x before 1.14.2. It doesn't sufficiently filter ou... |
| CVE-2019-7484 | MEDIUM | 6.5 | 0.8% | Dec 19, 2019 | Authenticated SQL Injection in SonicWall SMA100 allow user to gain read-only access to unauthorized resources using view... |
| CVE-2019-15006 | MEDIUM | 6.5 | 1.9% | Dec 19, 2019 | There was a man-in-the-middle (MITM) vulnerability present in the Confluence Previews plugin in Confluence Server and Co... |
| CVE-2019-19788 | MEDIUM | 5.5 | 0.3% | Dec 18, 2019 | Opera for Android before 54.0.2669.49432 is vulnerable to a sandboxed cross-origin iframe bypass attack. By using a serv... |
| CVE-2019-18781 | MEDIUM | 6.1 | 1.8% | Dec 18, 2019 | An open redirect vulnerability was discovered in Zoho ManageEngine ADSelfService Plus 5.x before 5809 that allows attack... |
| CVE-2019-11110 | MEDIUM | 6.7 | 0.4% | Dec 18, 2019 | Authentication bypass in the subsystem for Intel(R) CSME before versions 11.8.70, 11.11.70, 11.22.70, 12.0.45, 13.0.10 a... |
| CVE-2019-11109 | MEDIUM | 4.4 | 0.3% | Dec 18, 2019 | Logic issue in the subsystem for Intel(R) SPS before versions SPS_E5_04.01.04.275.0, SPS_SoC-X_04.00.04.100.0 and SPS_So... |
| CVE-2019-11108 | MEDIUM | 6.7 | 0.4% | Dec 18, 2019 | Insufficient input validation in subsystem for Intel(R) CSME before versions 12.0.45 and 13.0.10 may allow a privileged ... |
| CVE-2019-11106 | MEDIUM | 6.7 | 0.3% | Dec 18, 2019 | Insufficient session validation in the subsystem for Intel(R) CSME before versions 11.8.70, 12.0.45, 13.0.10 and 14.0.10... |
| CVE-2019-11105 | MEDIUM | 6.7 | 0.4% | Dec 18, 2019 | Logic issue in subsystem for Intel(R) CSME before versions 12.0.45, 13.0.10 and 14.0.10 may allow a privileged user to p... |
| CVE-2019-11102 | MEDIUM | 4.4 | 0.3% | Dec 18, 2019 | Insufficient input validation in Intel(R) DAL software for Intel(R) CSME before versions 11.8.70, 11.11.70, 11.22.70, 12... |
| CVE-2019-11101 | MEDIUM | 4.4 | 0.3% | Dec 18, 2019 | Insufficient input validation in the subsystem for Intel(R) CSME before versions 11.8.70, 11.11.70, 11.22.70, 12.0.45, 1... |
| CVE-2019-11100 | MEDIUM | 4.6 | 0.4% | Dec 18, 2019 | Insufficient input validation in the subsystem for Intel(R) AMT before versions 11.8.70, 11.11.70, 11.22.70 and 12.0.45 ... |
| CVE-2019-11090 | MEDIUM | 5.9 | 2.3% | Dec 18, 2019 | Cryptographic timing conditions in the subsystem for Intel(R) PTT before versions 11.8.70, 11.11.70, 11.22.70, 12.0.45, ... |
| CVE-2019-11087 | MEDIUM | 6.7 | 0.4% | Dec 18, 2019 | Insufficient input validation in the subsystem for Intel(R) CSME before versions 11.8.70, 11.11.70, 11.22.70, 12.0.45, 1... |
| CVE-2019-11086 | MEDIUM | 6.8 | 0.4% | Dec 18, 2019 | Insufficient input validation in subsystem for Intel(R) AMT before version 12.0.45 may allow an unauthenticated user to ... |
| CVE-2019-0168 | MEDIUM | 4.4 | 0.3% | Dec 18, 2019 | Insufficient input validation in the subsystem for Intel(R) CSME before versions 11.8.70, 12.0.45 and 13.0.10; Intel(R) ... |
| CVE-2019-0165 | MEDIUM | 4.4 | 0.3% | Dec 18, 2019 | Insufficient Input validation in the subsystem for Intel(R) CSME before versions 12.0.45,13.0.10 and 14.0.10 may allow a... |
| CVE-2019-5487 | MEDIUM | 5.3 | 1.4% | Dec 18, 2019 | An improper access control vulnerability exists in Gitlab EE <v12.3.3, <v12.2.7, & <v12.1.13 that allowed the group sear... |
| CVE-2019-5469 | MEDIUM | 6.5 | 0.8% | Dec 18, 2019 | An IDOR vulnerability exists in GitLab <v12.1.2, <v12.0.4, and <v11.11.6 that allowed uploading files from project archi... |
| CVE-2019-5073 | MEDIUM | 5.3 | 1.6% | Dec 18, 2019 | An exploitable information exposure vulnerability exists in the iocheckd service "I/O-Check" functionality of WAGO PFC20... |
| CVE-2019-18995 | MEDIUM | 5.3 | 2.1% | Dec 18, 2019 | The HMISimulator component of ABB PB610 Panel Builder 600 versions 2.8.0.424 and earlier fails to validate the content-l... |
Check if your code is affected by 2019 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now