2019 CVE Vulnerabilities

17,623 CVEs published in 2019.

CVE IDSeverityCVSSDescription
CVE-2019-1679MEDIUM5A vulnerability in the web interface of Cisco TelePresence Conductor, Cisco Expressway Series, and Cisco TelePresence Vi...
CVE-2019-1660MEDIUM5.3A vulnerability in the Simple Object Access Protocol (SOAP) of Cisco TelePresence Management Suite (TMS) software could ...
CVE-2019-1678MEDIUM4.3A vulnerability in Cisco Meeting Server could allow an authenticated, remote attacker to cause a partial denial of servi...
CVE-2019-1675HIGH7.5A vulnerability in the default configuration of the Cisco Aironet Active Sensor could allow an unauthenticated, remote a...
CVE-2019-7587Bo-blog Wind through 1.6.0-r allows SQL Injection via the admin.php/comments/batchdel/ comID parameter because this para...
CVE-2019-3704HIGH7.8VNX Control Station in Dell EMC VNX2 OE for File versions prior to 8.1.9.236 contains OS command injection vulnerability...
CVE-2019-1677MEDIUM4.6A vulnerability in Cisco Webex Meetings for Android could allow an unauthenticated, local attacker to perform a cross-si...
CVE-2019-7585An issue was discovered in Waimai Super Cms 20150505. web/Lib/Action/PublicAction.class.php allows time-based SQL Inject...
CVE-2019-7582The readBytes function in util/read.c in libming through 0.4.8 allows remote attackers to have unspecified impact via a ...
CVE-2019-7581The parseSWF_ACTIONRECORD function in util/parser.c in libming through 0.4.8 allows remote attackers to have unspecified...
CVE-2019-7580ThinkCMF 5.0.190111 allows remote attackers to execute arbitrary PHP code via the portal/admin_category/addpost.html ali...
CVE-2019-7535index.php in Gurock TestRail 5.3.0.3603 returns potentially sensitive information for an invalid request, as demonstrate...
CVE-2019-4008CRITICAL9.8API Connect V2018.1 through 2018.4.1.1 is impacted by access token leak. Authorization tokens in some URLs can result in...
CVE-2019-7578HIGH8.1SDL (Simple DirectMedia Layer) through 1.2.15 and 2.x through 2.0.9 has a heap-based buffer over-read in InitIMA_ADPCM i...
CVE-2019-7577HIGH8.8SDL (Simple DirectMedia Layer) through 1.2.15 and 2.x through 2.0.9 has a buffer over-read in SDL_LoadWAV_RW in audio/SD...
CVE-2019-7576HIGH8.8SDL (Simple DirectMedia Layer) through 1.2.15 and 2.x through 2.0.9 has a heap-based buffer over-read in InitMS_ADPCM in...
CVE-2019-7575HIGH8.8SDL (Simple DirectMedia Layer) through 1.2.15 and 2.x through 2.0.9 has a heap-based buffer overflow in MS_ADPCM_decode ...
CVE-2019-7574HIGH8.8SDL (Simple DirectMedia Layer) through 1.2.15 and 2.x through 2.0.9 has a heap-based buffer over-read in IMA_ADPCM_decod...
CVE-2019-7573HIGH8.8SDL (Simple DirectMedia Layer) through 1.2.15 and 2.x through 2.0.9 has a heap-based buffer over-read in InitMS_ADPCM in...
CVE-2019-7572HIGH8.8SDL (Simple DirectMedia Layer) through 1.2.15 and 2.x through 2.0.9 has a buffer over-read in IMA_ADPCM_nibble in audio/...
CVE-2019-7570A CSRF vulnerability was found in PbootCMS v1.3.6 that can delete users via an admin.php/User/del/ucode/ URI.
CVE-2019-7569An issue was discovered in DOYO (aka doyocms) 2.3(20140425 update). There is a CSRF vulnerability that can add a super a...
CVE-2019-7568An issue was discovered in baijiacms V4 that can result in time-based blind SQL injection to get data via the cate param...
CVE-2019-7567An issue was discovered in Waimai Super Cms 20150505. admin.php?m=Member&a=adminaddsave has XSS via the username or pass...
CVE-2019-7566CSZ CMS 1.1.8 has CSRF via admin/users/new/add.

Check if your code is affected by 2019 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now