2019 CVE Vulnerabilities
17,619 CVEs published in 2019.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2019-16456 | HIGH | 7.5 | 3.3% | Dec 19, 2019 | Adobe Acrobat and Reader versions , 2019.021.20056 and earlier, 2017.011.30152 and earlier, 2017.011.30155 and earlier v... |
| CVE-2019-16449 | HIGH | 7.5 | 3.3% | Dec 19, 2019 | Adobe Acrobat and Reader versions , 2019.021.20056 and earlier, 2017.011.30152 and earlier, 2017.011.30155 and earlier v... |
| CVE-2019-19902 | HIGH | 7.2 | 1.5% | Dec 19, 2019 | An issue was discovered in Backdrop CMS 1.13.x before 1.13.5 and 1.14.x before 1.14.2. It allows the upload of entire-si... |
| CVE-2019-7487 | HIGH | 7.8 | 0.5% | Dec 19, 2019 | Installation of the SonicOS SSLVPN NACagent 3.5 on the Windows operating system, an autorun value is created does not pu... |
| CVE-2019-7486 | HIGH | 8.8 | 1.6% | Dec 19, 2019 | Code injection in SonicWall SMA100 allows an authenticated user to execute arbitrary code in viewcacert CGI script. This... |
| CVE-2019-7485 | HIGH | 8.8 | 1.5% | Dec 19, 2019 | Buffer overflow in SonicWall SMA100 allows an authenticated user to execute arbitrary code in DEARegister CGI script. Th... |
| CVE-2019-7483 | HIGH | 7.5 | 4.0% | Dec 19, 2019 | In SonicWall SMA100, an unauthenticated Directory Traversal vulnerability in the handleWAFRedirect CGI allows the user t... |
| CVE-2019-17390 | HIGH | 7.8 | 0.4% | Dec 18, 2019 | An issue was discovered in the Outlook add-in in Pronestor Planner before 8.1.77. There is local privilege escalation in... |
| CVE-2019-11147 | HIGH | 7.8 | 0.4% | Dec 18, 2019 | Insufficient access control in hardware abstraction driver for MEInfo software for Intel(R) CSME before versions 11.8.70... |
| CVE-2019-11132 | HIGH | 8.4 | 1.3% | Dec 18, 2019 | Cross site scripting in subsystem in Intel(R) AMT before versions 11.8.70, 11.11.70, 11.22.70 and 12.0.45 may allow a pr... |
| CVE-2019-11104 | HIGH | 7.8 | 0.4% | Dec 18, 2019 | Insufficient input validation in MEInfo software for Intel(R) CSME before versions 11.8.70, 11.11.70, 11.22.70, 12.0.45,... |
| CVE-2019-11103 | HIGH | 7.8 | 0.4% | Dec 18, 2019 | Insufficient input validation in firmware update software for Intel(R) CSME before versions 12.0.45,13.0.10 and 14.0.10 ... |
| CVE-2019-11097 | HIGH | 7.8 | 0.3% | Dec 18, 2019 | Improper directory permissions in the installer for Intel(R) Management Engine Consumer Driver for Windows before versio... |
| CVE-2019-11088 | HIGH | 8.8 | 0.6% | Dec 18, 2019 | Insufficient input validation in subsystem in Intel(R) AMT before versions 11.8.70, 11.11.70, 11.22.70 and 12.0.45 may a... |
| CVE-2019-0169 | HIGH | 8.8 | 0.8% | Dec 18, 2019 | Heap overflow in subsystem in Intel(R) CSME before versions 11.8.70, 11.11.70, 11.22.70, 12.0.45; Intel(R) TXE before ve... |
| CVE-2019-0166 | HIGH | 7.5 | 1.4% | Dec 18, 2019 | Insufficient input validation in the subsystem for Intel(R) AMT before versions 11.8.70, 11.11.70, 11.22.70 and 12.0.45 ... |
| CVE-2019-0131 | HIGH | 8.1 | 0.6% | Dec 18, 2019 | Insufficient input validation in subsystem in Intel(R) AMT before versions 11.8.70, 11.11.70, 11.22.70 and 12.0.45 may a... |
| CVE-2019-5486 | HIGH | 8.8 | 1.5% | Dec 18, 2019 | A authentication bypass vulnerability exists in GitLab CE/EE <v12.3.2, <v12.2.6, and <v12.1.10 in the Salesforce login i... |
| CVE-2019-1387 | HIGH | 8.8 | 4.4% | Dec 18, 2019 | An issue was found in Git before v2.24.1, v2.23.1, v2.22.2, v2.21.1, v2.20.2, v2.19.3, v2.18.2, v2.17.3, v2.16.6, v2.15.... |
| CVE-2019-19724 | HIGH | 7.5 | 1.2% | Dec 18, 2019 | Insecure permissions (777) are set on $HOME/.singularity when it is newly created by Singularity (version from 3.3.0 to ... |
| CVE-2019-18997 | HIGH | 7.5 | 1.5% | Dec 18, 2019 | The HMISimulator component of ABB PB610 Panel Builder 600 uses the readFile/writeFile interface to manipulate the work f... |
| CVE-2019-18996 | HIGH | 7.8 | 0.4% | Dec 18, 2019 | Path settings in HMIStudio component of ABB PB610 Panel Builder 600 versions 2.8.0.424 and earlier accept DLLs outside o... |
| CVE-2019-18573 | HIGH | 8.8 | 1.0% | Dec 18, 2019 | The RSA Identity Governance and Lifecycle and RSA Via Lifecycle and Governance products prior to 7.1.1 P03 contain a Ses... |
| CVE-2019-15600 | HIGH | 7.5 | 2.5% | Dec 18, 2019 | A Path traversal exists in http_server which allows an attacker to read arbitrary system files. |
| CVE-2019-15596 | HIGH | 7.5 | 1.5% | Dec 18, 2019 | A path traversal in statics-server exists in all version that allows an attacker to perform a path traversal when a syml... |
Check if your code is affected by 2019 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now