2019 CVE Vulnerabilities

17,623 CVEs published in 2019.

CVE IDSeverityCVSSDescription
CVE-2019-1655MEDIUM6.1A vulnerability in the web-based management interface of Cisco Webex Meetings Server could allow an unauthenticated, rem...
CVE-2019-1653HIGH7.5A vulnerability in the web-based management interface of Cisco Small Business RV320 and RV325 Dual Gigabit WAN VPN Route...
CVE-2019-6777An issue was discovered in ZoneMinder v1.32.3. Reflected XSS exists in web/skins/classic/views/plugin.php via the zm/ind...
CVE-2019-1652HIGH7.2A vulnerability in the web-based management interface of Cisco Small Business RV320 and RV325 Dual Gigabit WAN VPN Route...
CVE-2019-1651CRITICAL9.9A vulnerability in the vContainer of the Cisco SD-WAN Solution could allow an authenticated, remote attacker to cause a ...
CVE-2019-1650HIGH8.8A vulnerability in the Cisco SD-WAN Solution could allow an authenticated, remote attacker to overwrite arbitrary files ...
CVE-2019-1648HIGH7.8A vulnerability in the user group configuration of the Cisco SD-WAN Solution could allow an authenticated, local attacke...
CVE-2019-1647HIGH8A vulnerability in the Cisco SD-WAN Solution could allow an authenticated, adjacent attacker to bypass authentication an...
CVE-2019-1646HIGH7.8A vulnerability in the local CLI of the Cisco SD-WAN Solution could allow an authenticated, local attacker to escalate p...
CVE-2019-1645MEDIUM4.3A vulnerability in the Cisco Connected Mobile Experiences (CMX) software could allow an unauthenticated, adjacent attack...
CVE-2019-6486Go before 1.10.8 and 1.11.x before 1.11.5 mishandles P-521 and P-384 elliptic curves, which allows attackers to cause a ...
CVE-2019-1644HIGH7.5A vulnerability in the UDP protocol implementation for Cisco IoT Field Network Director (IoT-FND) could allow an unauthe...
CVE-2019-1643MEDIUM6.1A vulnerability in the web-based management interface of Cisco Prime Infrastructure could allow an unauthenticated, remo...
CVE-2019-1642MEDIUM6.1A vulnerability in the web-based management interface of Cisco Firepower Management Center (FMC) software could allow an...
CVE-2019-1641HIGH7.8A vulnerability in the Cisco Webex Network Recording Player for Microsoft Windows and the Cisco Webex Player for Microso...
CVE-2019-1640HIGH7.8A vulnerability in the Cisco Webex Network Recording Player for Microsoft Windows and the Cisco Webex Player for Microso...
CVE-2019-1639HIGH7.8A vulnerability in the Cisco Webex Network Recording Player for Microsoft Windows and the Cisco Webex Player for Microso...
CVE-2019-1638HIGH7.8A vulnerability in the Cisco Webex Network Recording Player for Microsoft Windows and the Cisco Webex Player for Microso...
CVE-2019-1637HIGH7.8A vulnerability in the Cisco Webex Network Recording Player for Microsoft Windows and the Cisco Webex Player for Microso...
CVE-2019-6719An issue has been found in libIEC61850 v1.3.1. There is a use-after-free in the getState function in mms/iso_server/iso_...
CVE-2019-1636HIGH7.8A vulnerability in the Cisco Webex Teams client, formerly Cisco Spark, could allow an attacker to execute arbitrary comm...
CVE-2019-6713app\admin\controller\RouteController.php in ThinkCMF 5.0.190111 allows remote attackers to execute arbitrary PHP code by...
CVE-2019-6708PHPSHE 1.7 has SQL injection via the admin.php?mod=order state parameter.
CVE-2019-6707PHPSHE 1.7 has SQL injection via the admin.php?mod=product&act=state product_id[] parameter.
CVE-2019-6706HIGH7.5Lua 5.3.5 has a use-after-free in lua_upvaluejoin in lapi.c. For example, a crash outcome might be achieved by an attack...

Check if your code is affected by 2019 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now