2019 CVE Vulnerabilities
17,623 CVEs published in 2019.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2019-7434 | — | — | 1.4% | Mar 21, 2019 | PHP Scripts Mall Rental Bike Script 2.0.3 has directory traversal via a direct request for a listing of an uploads direc... |
| CVE-2019-7433 | — | — | 0.6% | Mar 21, 2019 | PHP Scripts Mall Rental Bike Script 2.0.3 has Cross-Site Request Forgery (CSRF) via the Edit Profile feature. |
| CVE-2019-7432 | — | — | 0.7% | Mar 21, 2019 | PHP Scripts Mall Rental Bike Script 2.0.3 has HTML injection via the STREET field in the Profile Edit section. |
| CVE-2019-7431 | — | — | 1.4% | Mar 21, 2019 | PHP Scripts Mall Image Sharing Script 1.3.4 has directory traversal via a direct request for a listing of an uploads dir... |
| CVE-2019-7430 | — | — | 1.0% | Mar 21, 2019 | PHP Scripts Mall Image Sharing Script 1.3.4 has HTML injection via the Search Bar. |
| CVE-2019-7429 | — | — | 1.4% | Mar 21, 2019 | PHP Scripts Mall Property Rental Software 2.1.4 has directory traversal via a direct request for a listing of an uploads... |
| CVE-2019-7425 | MEDIUM | 6.1 | 2.7% | Mar 21, 2019 | XSS exists in Zoho ManageEngine Netflow Analyzer Professional v7.0.0.2 in the Administration zone "/netflow/jspui/linkdo... |
| CVE-2019-7424 | — | — | 2.7% | Mar 21, 2019 | XSS exists in Zoho ManageEngine Netflow Analyzer Professional v7.0.0.2 in the Administration zone "/netflow/jspui/index.... |
| CVE-2019-7423 | — | — | 2.7% | Mar 21, 2019 | XSS exists in Zoho ManageEngine Netflow Analyzer Professional v7.0.0.2 in the Administration zone "/netflow/jspui/editPr... |
| CVE-2019-7422 | — | — | 2.7% | Mar 21, 2019 | XSS exists in Zoho ManageEngine Netflow Analyzer Professional v7.0.0.2 in the Administration zone "/netflow/jspui/addMai... |
| CVE-2019-7421 | — | — | 1.5% | Mar 21, 2019 | XSS exists in SAMSUNG X7400GX SyncThru Web Service V6.A6.25 V11.01.05.25_08-21-2015 in "/sws.login/gnb/loginView.sws" in... |
| CVE-2019-7420 | — | — | 1.5% | Mar 21, 2019 | XSS exists in SAMSUNG X7400GX SyncThru Web Service V6.A6.25 V11.01.05.25_08-21-2015 in "/sws.application/information/net... |
| CVE-2019-7419 | — | — | 1.5% | Mar 21, 2019 | XSS exists in SAMSUNG X7400GX SyncThru Web Service V6.A6.25 V11.01.05.25_08-21-2015 in "/sws/leftmenu.sws" in multiple p... |
| CVE-2019-7418 | — | — | 1.6% | Mar 21, 2019 | XSS exists in SAMSUNG X7400GX SyncThru Web Service V6.A6.25 V11.01.05.25_08-21-2015 in "/sws/swsAlert.sws" in multiple p... |
| CVE-2019-7417 | — | — | 1.5% | Mar 21, 2019 | XSS exists in Ericsson Active Library Explorer (ALEX) 14.3 in multiple parameters in the "/cgi-bin/alexserv" servlet, as... |
| CVE-2019-7416 | — | — | 1.5% | Mar 21, 2019 | XSS and/or a Client Side URL Redirect exists in OpenText Documentum Webtop 5.3 SP2. The parameter startat in "/webtop/he... |
| CVE-2019-7391 | — | — | 13.6% | Mar 21, 2019 | ZyXEL VMG3312-B10B DSL-491HNU-B1B v2 devices allow login/login-page.cgi CSRF. |
| CVE-2019-7386 | — | — | 3.7% | Mar 21, 2019 | A Denial of Service issue has been discovered in the Gecko component of KaiOS 2.5 10.05 (platform 48.0.a2) on Nokia 8810... |
| CVE-2019-7385 | HIGH | 7.8 | 12.2% | Mar 21, 2019 | An authenticated shell command injection issue has been discovered in Raisecom ISCOM HT803G-U, HT803G-W, HT803G-1GE, and... |
| CVE-2019-7384 | HIGH | 7.8 | 3.5% | Mar 21, 2019 | An authenticated shell command injection issue has been discovered in Raisecom ISCOM HT803G-U, HT803G-W, HT803G-1GE, and... |
| CVE-2019-7383 | HIGH | 7.8 | 1.3% | Mar 21, 2019 | An issue was discovered on Systrome Cumilon ISG-600C, ISG-600H, and ISG-800W devices with firmware V1.1-R2.1_TRUNK-20181... |
| CVE-2019-7299 | — | — | 1.7% | Mar 21, 2019 | A stored cross-site scripting (XSS) vulnerability in the submit_ticket.php module in the WP Support Plus Responsive Tick... |
| CVE-2019-7223 | — | — | 0.7% | Mar 21, 2019 | InvoicePlane 1.5 has stored XSS via the index.php/invoices/ajax/save invoice_password parameter, aka the "PDF password" ... |
| CVE-2019-7222 | MEDIUM | 5.5 | 0.7% | Mar 21, 2019 | The KVM implementation in the Linux kernel through 4.20.5 has an Information Leak. |
| CVE-2019-7221 | — | — | 0.8% | Mar 21, 2019 | The KVM implementation in the Linux kernel through 4.20.5 has a Use-after-Free. |
Check if your code is affected by 2019 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now