2019 CVE Vulnerabilities
17,623 CVEs published in 2019.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2019-0271 | MEDIUM | 6.5 | 1.5% | Mar 12, 2019 | ABAP Server (used in NetWeaver and Suite/ERP) and ABAP Platform does not sufficiently validate an XML document accepted ... |
| CVE-2019-0270 | — | — | 1.4% | Mar 12, 2019 | ABAP Server of SAP NetWeaver and ABAP Platform fail to perform necessary authorization checks for an authenticated user,... |
| CVE-2019-0269 | — | — | 1.0% | Mar 12, 2019 | SAP BusinessObjects Business Intelligence Platform (BI Workspace), versions 4.10 and 4.20, does not sufficiently encode ... |
| CVE-2019-0268 | — | — | 2.2% | Mar 12, 2019 | SAP BusinessObjects Business Intelligence Platform (CMC Module), versions 4.10, 4.20 and 4.30, does not sufficiently val... |
| CVE-2019-3615 | MEDIUM | 5.3 | 0.3% | Mar 12, 2019 | Data Leakage Attacks vulnerability in the web interface in McAfee Database Security prior to the 4.6.6 March 2019 update... |
| CVE-2019-9725 | — | — | 0.9% | Mar 12, 2019 | The Web manager (aka Commander) on Korenix JetPort 5601 and 5601f devices has Persistent XSS via the Port Alias field un... |
| CVE-2019-9558 | — | — | 1.0% | Mar 12, 2019 | Mailtraq WebMail version 2.17.7.3550 has Persistent Cross Site Scripting (XSS) via the body of an e-mail message. To exp... |
| CVE-2019-9557 | — | — | 1.0% | Mar 12, 2019 | Ability Mail Server 4.2.6 has Persistent Cross Site Scripting (XSS) via the body e-mail body. To exploit the vulnerabili... |
| CVE-2019-9714 | — | — | 0.8% | Mar 12, 2019 | An issue was discovered in Joomla! before 3.9.4. The media form field lacks escaping, leading to XSS. |
| CVE-2019-9713 | — | — | 1.7% | Mar 12, 2019 | An issue was discovered in Joomla! before 3.9.4. The sample data plugins lack ACL checks, allowing unauthorized access. |
| CVE-2019-9712 | — | — | 0.8% | Mar 12, 2019 | An issue was discovered in Joomla! before 3.9.4. The JSON handler in com_config lacks input validation, leading to XSS. |
| CVE-2019-9711 | — | — | 0.8% | Mar 12, 2019 | An issue was discovered in Joomla! before 3.9.4. The item_title layout in edit views lacks escaping, leading to XSS. |
| CVE-2019-9721 | MEDIUM | 6.5 | 1.4% | Mar 12, 2019 | A denial of service in the subtitle decoder in FFmpeg 3.2 and 4.1 allows attackers to hog the CPU via a crafted video fi... |
| CVE-2019-9718 | MEDIUM | 6.5 | 1.6% | Mar 12, 2019 | In FFmpeg 3.2 and 4.1, a denial of service in the subtitle decoder allows attackers to hog the CPU via a crafted video f... |
| CVE-2019-9644 | — | — | 1.6% | Mar 12, 2019 | An XSSI (cross-site inclusion) vulnerability in Jupyter Notebook before 5.7.6 allows inclusion of resources on malicious... |
| CVE-2019-9710 | — | — | 1.1% | Mar 12, 2019 | An issue was discovered in webargs before 5.1.3, as used with marshmallow and other products. JSON parsing uses a short-... |
| CVE-2019-9706 | MEDIUM | 5.5 | 0.5% | Mar 12, 2019 | Vixie Cron before the 3.0pl1-133 Debian package allows local users to cause a denial of service (use-after-free and daem... |
| CVE-2019-9705 | MEDIUM | 5.5 | 0.4% | Mar 12, 2019 | Vixie Cron before the 3.0pl1-133 Debian package allows local users to cause a denial of service (memory consumption) via... |
| CVE-2019-9704 | MEDIUM | 5.5 | 0.4% | Mar 12, 2019 | Vixie Cron before the 3.0pl1-133 Debian package allows local users to cause a denial of service (daemon crash) via a lar... |
| CVE-2019-4016 | HIGH | 7.8 | 0.5% | Mar 11, 2019 | IBM DB2 for Linux, UNIX and Windows (includes DB2 Connect Server) 9.7, 10.1, 10.5, and 11.1 is vulnerable to a buffer ov... |
| CVE-2019-4015 | HIGH | 7.8 | 0.5% | Mar 11, 2019 | IBM DB2 for Linux, UNIX and Windows (includes DB2 Connect Server) 9.7, 10.1, 10.5, and 11.1 is vulnerable to a buffer ov... |
| CVE-2019-1707 | MEDIUM | 5.4 | 0.9% | Mar 11, 2019 | A vulnerability in the web-based management interface of Cisco DNA Center could allow an authenticated, remote attacker ... |
| CVE-2019-1702 | MEDIUM | 6.1 | 1.2% | Mar 11, 2019 | Multiple vulnerabilities in the web-based management interface of Cisco Enterprise Chat and Email could allow an unauthe... |
| CVE-2019-1690 | MEDIUM | 6.5 | 0.6% | Mar 11, 2019 | A vulnerability in the management interface of Cisco Application Policy Infrastructure Controller (APIC) software could ... |
| CVE-2019-1618 | HIGH | 7.8 | 0.4% | Mar 11, 2019 | A vulnerability in the Tetration Analytics agent for Cisco Nexus 9000 Series Switches in standalone NX-OS mode could all... |
Check if your code is affected by 2019 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now