2019 CVE Vulnerabilities
17,623 CVEs published in 2019.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2019-1679 | MEDIUM | 5 | 2.1% | Feb 7, 2019 | A vulnerability in the web interface of Cisco TelePresence Conductor, Cisco Expressway Series, and Cisco TelePresence Vi... |
| CVE-2019-1660 | MEDIUM | 5.3 | 2.2% | Feb 7, 2019 | A vulnerability in the Simple Object Access Protocol (SOAP) of Cisco TelePresence Management Suite (TMS) software could ... |
| CVE-2019-1678 | MEDIUM | 4.3 | 1.4% | Feb 7, 2019 | A vulnerability in Cisco Meeting Server could allow an authenticated, remote attacker to cause a partial denial of servi... |
| CVE-2019-1675 | HIGH | 7.5 | 2.6% | Feb 7, 2019 | A vulnerability in the default configuration of the Cisco Aironet Active Sensor could allow an unauthenticated, remote a... |
| CVE-2019-7587 | — | — | 1.5% | Feb 7, 2019 | Bo-blog Wind through 1.6.0-r allows SQL Injection via the admin.php/comments/batchdel/ comID parameter because this para... |
| CVE-2019-3704 | HIGH | 7.8 | 0.9% | Feb 7, 2019 | VNX Control Station in Dell EMC VNX2 OE for File versions prior to 8.1.9.236 contains OS command injection vulnerability... |
| CVE-2019-1677 | MEDIUM | 4.6 | 0.4% | Feb 7, 2019 | A vulnerability in Cisco Webex Meetings for Android could allow an unauthenticated, local attacker to perform a cross-si... |
| CVE-2019-7585 | — | — | 1.5% | Feb 7, 2019 | An issue was discovered in Waimai Super Cms 20150505. web/Lib/Action/PublicAction.class.php allows time-based SQL Inject... |
| CVE-2019-7582 | — | — | 2.2% | Feb 7, 2019 | The readBytes function in util/read.c in libming through 0.4.8 allows remote attackers to have unspecified impact via a ... |
| CVE-2019-7581 | — | — | 2.1% | Feb 7, 2019 | The parseSWF_ACTIONRECORD function in util/parser.c in libming through 0.4.8 allows remote attackers to have unspecified... |
| CVE-2019-7580 | — | — | 9.9% | Feb 7, 2019 | ThinkCMF 5.0.190111 allows remote attackers to execute arbitrary PHP code via the portal/admin_category/addpost.html ali... |
| CVE-2019-7535 | — | — | 1.1% | Feb 7, 2019 | index.php in Gurock TestRail 5.3.0.3603 returns potentially sensitive information for an invalid request, as demonstrate... |
| CVE-2019-4008 | CRITICAL | 9.8 | 2.3% | Feb 7, 2019 | API Connect V2018.1 through 2018.4.1.1 is impacted by access token leak. Authorization tokens in some URLs can result in... |
| CVE-2019-7578 | HIGH | 8.1 | 2.9% | Feb 7, 2019 | SDL (Simple DirectMedia Layer) through 1.2.15 and 2.x through 2.0.9 has a heap-based buffer over-read in InitIMA_ADPCM i... |
| CVE-2019-7577 | HIGH | 8.8 | 3.0% | Feb 7, 2019 | SDL (Simple DirectMedia Layer) through 1.2.15 and 2.x through 2.0.9 has a buffer over-read in SDL_LoadWAV_RW in audio/SD... |
| CVE-2019-7576 | HIGH | 8.8 | 2.9% | Feb 7, 2019 | SDL (Simple DirectMedia Layer) through 1.2.15 and 2.x through 2.0.9 has a heap-based buffer over-read in InitMS_ADPCM in... |
| CVE-2019-7575 | HIGH | 8.8 | 3.0% | Feb 7, 2019 | SDL (Simple DirectMedia Layer) through 1.2.15 and 2.x through 2.0.9 has a heap-based buffer overflow in MS_ADPCM_decode ... |
| CVE-2019-7574 | HIGH | 8.8 | 2.8% | Feb 7, 2019 | SDL (Simple DirectMedia Layer) through 1.2.15 and 2.x through 2.0.9 has a heap-based buffer over-read in IMA_ADPCM_decod... |
| CVE-2019-7573 | HIGH | 8.8 | 3.0% | Feb 7, 2019 | SDL (Simple DirectMedia Layer) through 1.2.15 and 2.x through 2.0.9 has a heap-based buffer over-read in InitMS_ADPCM in... |
| CVE-2019-7572 | HIGH | 8.8 | 2.8% | Feb 7, 2019 | SDL (Simple DirectMedia Layer) through 1.2.15 and 2.x through 2.0.9 has a buffer over-read in IMA_ADPCM_nibble in audio/... |
| CVE-2019-7570 | — | — | 0.5% | Feb 7, 2019 | A CSRF vulnerability was found in PbootCMS v1.3.6 that can delete users via an admin.php/User/del/ucode/ URI. |
| CVE-2019-7569 | — | — | 0.7% | Feb 7, 2019 | An issue was discovered in DOYO (aka doyocms) 2.3(20140425 update). There is a CSRF vulnerability that can add a super a... |
| CVE-2019-7568 | — | — | 1.5% | Feb 7, 2019 | An issue was discovered in baijiacms V4 that can result in time-based blind SQL injection to get data via the cate param... |
| CVE-2019-7567 | — | — | 0.8% | Feb 7, 2019 | An issue was discovered in Waimai Super Cms 20150505. admin.php?m=Member&a=adminaddsave has XSS via the username or pass... |
| CVE-2019-7566 | — | — | 0.7% | Feb 7, 2019 | CSZ CMS 1.1.8 has CSRF via admin/users/new/add. |
Check if your code is affected by 2019 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now