2019 CVE Vulnerabilities

17,623 CVEs published in 2019.

CVE IDSeverityCVSSDescription
CVE-2019-9185Controller/Async/FilesystemManager.php in the filemanager in Bolt before 3.6.5 allows remote attackers to execute arbitr...
CVE-2019-9121An issue was discovered on Motorola C1 and M2 devices with firmware 1.01 and 1.07 respectively. This issue is a Command ...
CVE-2019-9120An issue was discovered on Motorola C1 and M2 devices with firmware 1.01 and 1.07 respectively. This issue is a Command ...
CVE-2019-9119An issue was discovered on Motorola C1 and M2 devices with firmware 1.01 and 1.07 respectively. This issue is a Command ...
CVE-2019-9118An issue was discovered on Motorola C1 and M2 devices with firmware 1.01 and 1.07 respectively. This issue is a Command ...
CVE-2019-9117An issue was discovered on Motorola C1 and M2 devices with firmware 1.01 and 1.07 respectively. This issue is a Command ...
CVE-2019-8440An issue was discovered in DiliCMS 2.4.0. There is a Stored XSS Vulnerability in the third textbox (aka site logo) of "S...
CVE-2019-8439An issue was discovered in DiliCMS 2.4.0. There is a Stored XSS Vulnerability in the second textbox of "System setting->...
CVE-2019-8438An issue was discovered in DiliCMS 2.4.0. There is a Stored XSS Vulnerability in the first textbox of "System setting->s...
CVE-2019-8437njiandan-cms through 2013-05-23 has index.php/admin/user_new CSRF to add an administrator.
CVE-2019-7661An issue was discovered in PHPMyWind 5.5. The method parameter of the data/api/oauth/connect.php page has a reflected Cr...
CVE-2019-7660An issue was discovered in PHPMyWind 5.5. The username parameter of the /install/index.php page has a stored Cross-site ...
CVE-2019-7175HIGH7.5In ImageMagick before 7.0.8-25, some memory leaks exist in DecodeImage in coders/pcd.c.
CVE-2019-6710Zyxel NBG-418N v2 v1.00(AAXM.4)C0 devices allow login.cgi CSRF.
CVE-2019-8986HIGH7.7The SOAP API component vulnerability of TIBCO Software Inc.'s TIBCO JasperReports Server, and TIBCO JasperReports Server...
CVE-2019-0192In Apache Solr versions 5.0.0 to 5.5.5 and 6.0.0 to 6.6.5, the Config API allows to configure the JMX server via an HTTP...
CVE-2019-5019CRITICAL9.8A heap-based overflow vulnerability exists in the PowerPoint document conversion function of Rainbow PDF Office Server D...
CVE-2019-1600MEDIUM4.4A vulnerability in the file system permissions of Cisco FXOS Software and Cisco NX-OS Software could allow an authentica...
CVE-2019-1599HIGH8.6A vulnerability in the network stack of Cisco NX-OS Software could allow an unauthenticated, remote attacker to cause a ...
CVE-2019-1598HIGH8.6Multiple vulnerabilities in the implementation of the Lightweight Directory Access Protocol (LDAP) feature in Cisco FXOS...
CVE-2019-1597HIGH8.6Multiple vulnerabilities in the implementation of the Lightweight Directory Access Protocol (LDAP) feature in Cisco FXOS...
CVE-2019-1596HIGH7.8A vulnerability in the Bash shell implementation for Cisco NX-OS Software could allow an authenticated, local attacker t...
CVE-2019-3784HIGH8.2Cloud Foundry Stratos, versions prior to 2.3.0, contains an insecure session that can be spoofed. When deployed on cloud...
CVE-2019-3783HIGH8.8Cloud Foundry Stratos, versions prior to 2.3.0, deploys with a public default session store secret. A malicious user wit...
CVE-2019-3781HIGH8.8Cloud Foundry CLI, versions prior to v6.43.0, improperly exposes passwords when verbose/trace/debugging is turned on. A ...

Check if your code is affected by 2019 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now