2019 CVE Vulnerabilities
17,623 CVEs published in 2019.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2019-1748 | HIGH | 7.4 | 1.2% | Mar 28, 2019 | A vulnerability in the Cisco Network Plug-and-Play (PnP) agent of Cisco IOS Software and Cisco IOS XE Software could all... |
| CVE-2019-1747 | HIGH | 8.6 | 2.4% | Mar 28, 2019 | A vulnerability in the implementation of the Short Message Service (SMS) handling functionality of Cisco IOS Software an... |
| CVE-2019-1746 | HIGH | 7.4 | 0.6% | Mar 28, 2019 | A vulnerability in the Cluster Management Protocol (CMP) processing code in Cisco IOS Software and Cisco IOS XE Software... |
| CVE-2019-1745 | HIGH | 7.8 | 0.4% | Mar 28, 2019 | A vulnerability in Cisco IOS XE Software could allow an authenticated, local attacker to inject arbitrary commands that ... |
| CVE-2019-1743 | HIGH | 8.8 | 2.2% | Mar 28, 2019 | A vulnerability in the web UI framework of Cisco IOS XE Software could allow an authenticated, remote attacker to make u... |
| CVE-2019-1742 | MEDIUM | 5.3 | 2.2% | Mar 28, 2019 | A vulnerability in the web UI of Cisco IOS XE Software could allow an unauthenticated, remote attacker to access sensiti... |
| CVE-2019-1741 | HIGH | 7.5 | 2.8% | Mar 28, 2019 | A vulnerability in the Cisco Encrypted Traffic Analytics (ETA) feature of Cisco IOS XE Software could allow an unauthent... |
| CVE-2019-1740 | HIGH | 8.6 | 2.2% | Mar 28, 2019 | A vulnerability in the Network-Based Application Recognition (NBAR) feature of Cisco IOS Software and Cisco IOS XE Softw... |
| CVE-2019-1739 | HIGH | 7.5 | 2.5% | Mar 28, 2019 | A vulnerability in the Network-Based Application Recognition (NBAR) feature of Cisco IOS Software and Cisco IOS XE Softw... |
| CVE-2019-1738 | HIGH | 7.5 | 2.5% | Mar 28, 2019 | A vulnerability in the Network-Based Application Recognition (NBAR) feature of Cisco IOS Software and Cisco IOS XE Softw... |
| CVE-2019-1737 | HIGH | 8.6 | 2.6% | Mar 27, 2019 | A vulnerability in the processing of IP Service Level Agreement (SLA) packets by Cisco IOS Software and Cisco IOS XE sof... |
| CVE-2019-0161 | — | — | 0.4% | Mar 27, 2019 | Stack overflow in XHCI for EDK II may allow an unauthenticated user to potentially enable denial of service via local ac... |
| CVE-2019-0160 | CRITICAL | 9.8 | 1.3% | Mar 27, 2019 | Buffer overflow in system firmware for EDK II may allow unauthenticated user to potentially enable escalation of privile... |
| CVE-2019-1010257 | CRITICAL | 9.1 | 4.4% | Mar 27, 2019 | An Information Disclosure / Data Modification issue exists in article2pdf_getfile.php in the article2pdf Wordpress plugi... |
| CVE-2019-3829 | MEDIUM | 5.3 | 59.0% | Mar 27, 2019 | A vulnerability was found in gnutls versions from 3.5.8 before 3.6.7. A memory corruption (double free) vulnerability in... |
| CVE-2019-10238 | — | — | 0.8% | Mar 27, 2019 | Sitemagic CMS v4.4 has XSS in SMFiles/FrmUpload.class.php via the filename parameter. |
| CVE-2019-10237 | — | — | 0.6% | Mar 27, 2019 | S-CMS PHP v1.0 has a CSRF vulnerability to add a new admin user via the 4.edu.php/admin/ajax.php?type=admin&action=add&l... |
| CVE-2019-1000031 | HIGH | 7.5 | 3.7% | Mar 27, 2019 | A disk space or quota exhaustion issue exists in article2pdf_getfile.php in the article2pdf Wordpress plugin 0.24, 0.25,... |
| CVE-2019-10233 | HIGH | 8.1 | 1.4% | Mar 27, 2019 | Teclib GLPI before 9.4.1.1 is affected by a timing attack associated with a cookie. |
| CVE-2019-10232 | — | — | 23.2% | Mar 27, 2019 | Teclib GLPI through 9.3.3 has SQL injection via the "cycle" parameter in /scripts/unlock_tasks.php. |
| CVE-2019-10231 | — | — | 2.1% | Mar 27, 2019 | Teclib GLPI before 9.4.1.1 is affected by a PHP type juggling vulnerability allowing bypass of authentication. This occu... |
| CVE-2019-6536 | — | — | 1.2% | Mar 27, 2019 | Opening a specially crafted LCDS LAquis SCADA before 4.3.1.71 ELS file may result in a write past the end of an allocate... |
| CVE-2019-9860 | — | — | 0.8% | Mar 27, 2019 | Due to unencrypted signal communication and predictability of rolling codes, an attacker can "desynchronize" an ABUS Sec... |
| CVE-2019-9863 | — | — | 2.1% | Mar 27, 2019 | Due to the use of an insecure algorithm for rolling codes in the ABUS Secvest wireless alarm system FUAA50000 3.01.01 an... |
| CVE-2019-9862 | — | — | 0.6% | Mar 27, 2019 | An issue was discovered on ABUS Secvest wireless alarm system FUAA50000 3.01.01 in conjunction with Secvest remote contr... |
Check if your code is affected by 2019 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now