2019 CVE Vulnerabilities
17,623 CVEs published in 2019.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2019-9185 | — | — | 2.7% | Mar 7, 2019 | Controller/Async/FilesystemManager.php in the filemanager in Bolt before 3.6.5 allows remote attackers to execute arbitr... |
| CVE-2019-9121 | — | — | 4.1% | Mar 7, 2019 | An issue was discovered on Motorola C1 and M2 devices with firmware 1.01 and 1.07 respectively. This issue is a Command ... |
| CVE-2019-9120 | — | — | 6.2% | Mar 7, 2019 | An issue was discovered on Motorola C1 and M2 devices with firmware 1.01 and 1.07 respectively. This issue is a Command ... |
| CVE-2019-9119 | — | — | 6.2% | Mar 7, 2019 | An issue was discovered on Motorola C1 and M2 devices with firmware 1.01 and 1.07 respectively. This issue is a Command ... |
| CVE-2019-9118 | — | — | 6.2% | Mar 7, 2019 | An issue was discovered on Motorola C1 and M2 devices with firmware 1.01 and 1.07 respectively. This issue is a Command ... |
| CVE-2019-9117 | — | — | 6.2% | Mar 7, 2019 | An issue was discovered on Motorola C1 and M2 devices with firmware 1.01 and 1.07 respectively. This issue is a Command ... |
| CVE-2019-8440 | — | — | 0.7% | Mar 7, 2019 | An issue was discovered in DiliCMS 2.4.0. There is a Stored XSS Vulnerability in the third textbox (aka site logo) of "S... |
| CVE-2019-8439 | — | — | 0.7% | Mar 7, 2019 | An issue was discovered in DiliCMS 2.4.0. There is a Stored XSS Vulnerability in the second textbox of "System setting->... |
| CVE-2019-8438 | — | — | 0.7% | Mar 7, 2019 | An issue was discovered in DiliCMS 2.4.0. There is a Stored XSS Vulnerability in the first textbox of "System setting->s... |
| CVE-2019-8437 | — | — | 0.7% | Mar 7, 2019 | njiandan-cms through 2013-05-23 has index.php/admin/user_new CSRF to add an administrator. |
| CVE-2019-7661 | — | — | 0.9% | Mar 7, 2019 | An issue was discovered in PHPMyWind 5.5. The method parameter of the data/api/oauth/connect.php page has a reflected Cr... |
| CVE-2019-7660 | — | — | 0.9% | Mar 7, 2019 | An issue was discovered in PHPMyWind 5.5. The username parameter of the /install/index.php page has a stored Cross-site ... |
| CVE-2019-7175 | HIGH | 7.5 | 2.9% | Mar 7, 2019 | In ImageMagick before 7.0.8-25, some memory leaks exist in DecodeImage in coders/pcd.c. |
| CVE-2019-6710 | — | — | 3.0% | Mar 7, 2019 | Zyxel NBG-418N v2 v1.00(AAXM.4)C0 devices allow login.cgi CSRF. |
| CVE-2019-8986 | HIGH | 7.7 | 1.1% | Mar 7, 2019 | The SOAP API component vulnerability of TIBCO Software Inc.'s TIBCO JasperReports Server, and TIBCO JasperReports Server... |
| CVE-2019-0192 | — | — | 77.5% | Mar 7, 2019 | In Apache Solr versions 5.0.0 to 5.5.5 and 6.0.0 to 6.6.5, the Config API allows to configure the JMX server via an HTTP... |
| CVE-2019-5019 | CRITICAL | 9.8 | 2.3% | Mar 7, 2019 | A heap-based overflow vulnerability exists in the PowerPoint document conversion function of Rainbow PDF Office Server D... |
| CVE-2019-1600 | MEDIUM | 4.4 | 0.4% | Mar 7, 2019 | A vulnerability in the file system permissions of Cisco FXOS Software and Cisco NX-OS Software could allow an authentica... |
| CVE-2019-1599 | HIGH | 8.6 | 14.2% | Mar 7, 2019 | A vulnerability in the network stack of Cisco NX-OS Software could allow an unauthenticated, remote attacker to cause a ... |
| CVE-2019-1598 | HIGH | 8.6 | 2.5% | Mar 7, 2019 | Multiple vulnerabilities in the implementation of the Lightweight Directory Access Protocol (LDAP) feature in Cisco FXOS... |
| CVE-2019-1597 | HIGH | 8.6 | 2.5% | Mar 7, 2019 | Multiple vulnerabilities in the implementation of the Lightweight Directory Access Protocol (LDAP) feature in Cisco FXOS... |
| CVE-2019-1596 | HIGH | 7.8 | 0.3% | Mar 7, 2019 | A vulnerability in the Bash shell implementation for Cisco NX-OS Software could allow an authenticated, local attacker t... |
| CVE-2019-3784 | HIGH | 8.2 | 1.1% | Mar 7, 2019 | Cloud Foundry Stratos, versions prior to 2.3.0, contains an insecure session that can be spoofed. When deployed on cloud... |
| CVE-2019-3783 | HIGH | 8.8 | 0.9% | Mar 7, 2019 | Cloud Foundry Stratos, versions prior to 2.3.0, deploys with a public default session store secret. A malicious user wit... |
| CVE-2019-3781 | HIGH | 8.8 | 1.3% | Mar 7, 2019 | Cloud Foundry CLI, versions prior to v6.43.0, improperly exposes passwords when verbose/trace/debugging is turned on. A ... |
Check if your code is affected by 2019 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now