2019 CVE Vulnerabilities

17,623 CVEs published in 2019.

CVE IDSeverityCVSSDescription
CVE-2019-8996CRITICAL9.8In Signiant Manager+Agents before 13.5, the implementation of the set command has a Buffer Overflow.
CVE-2019-6340HIGH8.1Some field types do not properly sanitize data from non-form sources in Drupal 8.5.x before 8.5.11 and Drupal 8.6.x befo...
CVE-2019-1700MEDIUM6.1A vulnerability in field-programmable gate array (FPGA) ingress buffer management for the Cisco Firepower 9000 Series wi...
CVE-2019-1698MEDIUM4.9A vulnerability in the web-based user interface of Cisco Internet of Things Field Network Director (IoT-FND) Software co...
CVE-2019-1691MEDIUM5.8A vulnerability in the detection engine of Cisco Firepower Threat Defense Software could allow an unauthenticated, remot...
CVE-2019-1685MEDIUM6.1A vulnerability in the Security Assertion Markup Language (SAML) single sign-on (SSO) interface of Cisco Unity Connectio...
CVE-2019-1684MEDIUM6.5A vulnerability in the Cisco Discovery Protocol or Link Layer Discovery Protocol (LLDP) implementation for the Cisco IP ...
CVE-2019-1681HIGH7.5A vulnerability in the TFTP service of Cisco Network Convergence System 1000 Series software could allow an unauthentica...
CVE-2019-8985On Netis WF2411 with firmware 2.1.36123 and other Netis WF2xxx devices (possibly WF2411 through WF2880), there is a stac...
CVE-2019-1667LOW3.3A vulnerability in the Graphite interface of Cisco HyperFlex software could allow an authenticated, local attacker to wr...
CVE-2019-1666MEDIUM5.3A vulnerability in the Graphite service of Cisco HyperFlex software could allow an unauthenticated, remote attacker to r...
CVE-2019-1665MEDIUM4.7A vulnerability in the web-based management interface of Cisco HyperFlex software could allow an unauthenticated, remote...
CVE-2019-1664HIGH7.8A vulnerability in the hxterm service of Cisco HyperFlex Software could allow an unauthenticated, local attacker to gain...
CVE-2019-1662HIGH8.2A vulnerability in the Quality of Voice Reporting (QOVR) service of Cisco Prime Collaboration Assurance (PCA) Software c...
CVE-2019-8984MDaemon Webmail 14.x through 18.x before 18.5.2 has XSS (issue 2 of 2).
CVE-2019-8983MDaemon Webmail 14.x through 18.x before 18.5.2 has XSS (issue 1 of 2).
CVE-2019-1659HIGH7.4A vulnerability in the Identity Services Engine (ISE) integration feature of Cisco Prime Infrastructure (PI) could allow...
CVE-2019-8982com/wavemaker/studio/StudioService.java in WaveMaker Studio 6.6 mishandles the studioService.download?method=getContent&...
CVE-2019-8980HIGH7.5A memory leak in the kernel_read_file function in fs/exec.c in the Linux kernel through 4.20.11 allows attackers to caus...
CVE-2019-8979Kohana through 3.3.6 has SQL Injection when the order_by() parameter can be controlled.
CVE-2019-1000049Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2019-8363. Reason: This candidate is a reservation ...
CVE-2019-1000048Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2013-7469. Reason: This candidate is a reservation ...
CVE-2019-1000047Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2013-7469. Reason: This candidate is a reservation ...
CVE-2019-1000041Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2019-7575, CVE-2019-7577. Reason: This candidate is...
CVE-2019-1000030Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2019-7580. Reason: This candidate is a reservation ...

Check if your code is affected by 2019 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now