2019 CVE Vulnerabilities

17,619 CVEs published in 2019.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2019-18287MEDIUM5.3A vulnerability has been identified in SPPA-T3000 Application Server (All versions < Service Pack R8.2 SP2). The Applica...
CVE-2019-18286MEDIUM5.3A vulnerability has been identified in SPPA-T3000 Application Server (All versions < Service Pack R8.2 SP2). The Applica...
CVE-2019-18285MEDIUM5.9A vulnerability has been identified in SPPA-T3000 Application Server (All versions < Service Pack R8.2 SP2). The RMI com...
CVE-2019-13947MEDIUM4.9A vulnerability has been identified in Control Center Server (CCS) (All versions < V1.5.0). The user configuration menu ...
CVE-2019-13944MEDIUM5.3A vulnerability has been identified in EN100 Ethernet module DNP3 variant (All versions), EN100 Ethernet module IEC 6185...
CVE-2019-13943MEDIUM6.1A vulnerability has been identified in EN100 Ethernet module DNP3 variant (All versions), EN100 Ethernet module IEC 6185...
CVE-2019-13931MEDIUM5.4A vulnerability has been identified in XHQ (All versions < V6.0.0.2). The web interface could allow for an an attacker t...
CVE-2019-19198MEDIUM5.4The Scoutnet Kalender plugin 1.1.0 for WordPress allows XSS.
CVE-2019-17428MEDIUM5.9An issue was discovered in Intesync Solismed 3.3sp1. An flaw in the encryption implementation exists, allowing for all e...
CVE-2019-15935MEDIUM6.1Intesync Solismed 3.3sp has XSS.
CVE-2019-15930MEDIUM4.3Intesync Solismed 3.3sp allows Clickjacking.
CVE-2019-14849MEDIUM5.4A vulnerability was found in 3scale before version 2.6, did not set the HTTPOnly attribute on the user session cookie. A...
CVE-2019-13945MEDIUM6.8A vulnerability has been identified in SIMATIC S7-1200 CPU family (incl. SIPLUS variants) (All versions), SIMATIC S7-120...
CVE-2019-13927MEDIUM5.3A vulnerability has been identified in Desigo PX automation controllers PXC00-E.D, PXC50-E.D, PXC100-E.D, PXC200-E.D wit...
CVE-2019-10618MEDIUM5.5Driver may access an invalid address while processing IO control due to lack of check of address validation in Snapdrago...
CVE-2019-10545MEDIUM5.5Null pointer dereference issue in kernel due to missing check related to LLC support in GPU in Snapdragon Auto, Snapdrag...
CVE-2019-10520MEDIUM5.5An unprivileged application can allocate GPU memory by calling memory allocation ioctl function and can exhaust all the ...
CVE-2019-10484MEDIUM5.5Use after free issue occurs when command destructors access dynamically allocated response buffer which is already deall...
CVE-2019-19748MEDIUM6.1The Work Time Calendar app before 4.7.1 for Jira allows XSS.
CVE-2019-19746MEDIUM5.5make_arrow in arrow.c in Xfig fig2dev 3.2.7b allows a segmentation fault and out-of-bounds write because of an integer o...
CVE-2019-7004MEDIUM5.4A Cross-Site Scripting (XSS) vulnerability in the WebUI component of IP Office Application Server could allow unauthoriz...
CVE-2019-10695MEDIUM6.5When using the cd4pe::root_configuration task to configure a Continuous Delivery for PE installation, the root user’s us...
CVE-2019-3983MEDIUM6.8Blink XT2 Sync Module firmware prior to 2.13.11 allows remote attackers to execute arbitrary code and commands on the de...
CVE-2019-0402MEDIUM4.4SAP Adaptive Server Enterprise, before versions 15.7 and 16.0, under certain conditions exposes some sensitive informati...
CVE-2019-0399MEDIUM6.5SAP Portfolio and Project Management, before versions S4CORE 102, 103, EPPM 100 and CPRXRPM 500_702, 600_740, 610_740; u...

Check if your code is affected by 2019 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now