2019 CVE Vulnerabilities
17,619 CVEs published in 2019.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2019-18287 | MEDIUM | 5.3 | 1.6% | Dec 12, 2019 | A vulnerability has been identified in SPPA-T3000 Application Server (All versions < Service Pack R8.2 SP2). The Applica... |
| CVE-2019-18286 | MEDIUM | 5.3 | 1.6% | Dec 12, 2019 | A vulnerability has been identified in SPPA-T3000 Application Server (All versions < Service Pack R8.2 SP2). The Applica... |
| CVE-2019-18285 | MEDIUM | 5.9 | 1.0% | Dec 12, 2019 | A vulnerability has been identified in SPPA-T3000 Application Server (All versions < Service Pack R8.2 SP2). The RMI com... |
| CVE-2019-13947 | MEDIUM | 4.9 | 0.9% | Dec 12, 2019 | A vulnerability has been identified in Control Center Server (CCS) (All versions < V1.5.0). The user configuration menu ... |
| CVE-2019-13944 | MEDIUM | 5.3 | 1.6% | Dec 12, 2019 | A vulnerability has been identified in EN100 Ethernet module DNP3 variant (All versions), EN100 Ethernet module IEC 6185... |
| CVE-2019-13943 | MEDIUM | 6.1 | 0.9% | Dec 12, 2019 | A vulnerability has been identified in EN100 Ethernet module DNP3 variant (All versions), EN100 Ethernet module IEC 6185... |
| CVE-2019-13931 | MEDIUM | 5.4 | 0.5% | Dec 12, 2019 | A vulnerability has been identified in XHQ (All versions < V6.0.0.2). The web interface could allow for an an attacker t... |
| CVE-2019-19198 | MEDIUM | 5.4 | 1.2% | Dec 12, 2019 | The Scoutnet Kalender plugin 1.1.0 for WordPress allows XSS. |
| CVE-2019-17428 | MEDIUM | 5.9 | 0.7% | Dec 12, 2019 | An issue was discovered in Intesync Solismed 3.3sp1. An flaw in the encryption implementation exists, allowing for all e... |
| CVE-2019-15935 | MEDIUM | 6.1 | 1.3% | Dec 12, 2019 | Intesync Solismed 3.3sp has XSS. |
| CVE-2019-15930 | MEDIUM | 4.3 | 1.4% | Dec 12, 2019 | Intesync Solismed 3.3sp allows Clickjacking. |
| CVE-2019-14849 | MEDIUM | 5.4 | 0.5% | Dec 12, 2019 | A vulnerability was found in 3scale before version 2.6, did not set the HTTPOnly attribute on the user session cookie. A... |
| CVE-2019-13945 | MEDIUM | 6.8 | 0.5% | Dec 12, 2019 | A vulnerability has been identified in SIMATIC S7-1200 CPU family (incl. SIPLUS variants) (All versions), SIMATIC S7-120... |
| CVE-2019-13927 | MEDIUM | 5.3 | 1.7% | Dec 12, 2019 | A vulnerability has been identified in Desigo PX automation controllers PXC00-E.D, PXC50-E.D, PXC100-E.D, PXC200-E.D wit... |
| CVE-2019-10618 | MEDIUM | 5.5 | 0.2% | Dec 12, 2019 | Driver may access an invalid address while processing IO control due to lack of check of address validation in Snapdrago... |
| CVE-2019-10545 | MEDIUM | 5.5 | 0.2% | Dec 12, 2019 | Null pointer dereference issue in kernel due to missing check related to LLC support in GPU in Snapdragon Auto, Snapdrag... |
| CVE-2019-10520 | MEDIUM | 5.5 | 0.2% | Dec 12, 2019 | An unprivileged application can allocate GPU memory by calling memory allocation ioctl function and can exhaust all the ... |
| CVE-2019-10484 | MEDIUM | 5.5 | 0.2% | Dec 12, 2019 | Use after free issue occurs when command destructors access dynamically allocated response buffer which is already deall... |
| CVE-2019-19748 | MEDIUM | 6.1 | 0.7% | Dec 12, 2019 | The Work Time Calendar app before 4.7.1 for Jira allows XSS. |
| CVE-2019-19746 | MEDIUM | 5.5 | 1.2% | Dec 12, 2019 | make_arrow in arrow.c in Xfig fig2dev 3.2.7b allows a segmentation fault and out-of-bounds write because of an integer o... |
| CVE-2019-7004 | MEDIUM | 5.4 | 2.2% | Dec 12, 2019 | A Cross-Site Scripting (XSS) vulnerability in the WebUI component of IP Office Application Server could allow unauthoriz... |
| CVE-2019-10695 | MEDIUM | 6.5 | 0.9% | Dec 12, 2019 | When using the cd4pe::root_configuration task to configure a Continuous Delivery for PE installation, the root user’s us... |
| CVE-2019-3983 | MEDIUM | 6.8 | 1.0% | Dec 11, 2019 | Blink XT2 Sync Module firmware prior to 2.13.11 allows remote attackers to execute arbitrary code and commands on the de... |
| CVE-2019-0402 | MEDIUM | 4.4 | 0.4% | Dec 11, 2019 | SAP Adaptive Server Enterprise, before versions 15.7 and 16.0, under certain conditions exposes some sensitive informati... |
| CVE-2019-0399 | MEDIUM | 6.5 | 0.9% | Dec 11, 2019 | SAP Portfolio and Project Management, before versions S4CORE 102, 103, EPPM 100 and CPRXRPM 500_702, 600_740, 610_740; u... |
Check if your code is affected by 2019 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now