2019 CVE Vulnerabilities

17,619 CVEs published in 2019.

CVE IDSeverityCVSSDescription
CVE-2019-19499MEDIUM6.5Grafana <= 6.4.3 has an Arbitrary File Read vulnerability, which could be exploited by an authenticated attacker that ha...
CVE-2019-18392Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. No...
CVE-2019-5321HIGH8.8Aruba Intelligent Edge Switch Series 2540, 2530, 2930F, 2930M, 2920, 5400R, and 3810M with firmware 16.08.* before 16.08...
CVE-2019-5320MEDIUM6.1Aruba Intelligent Edge Switch Series 2540, 2530, 2930F, 2930M, 2920, 5400R, and 3810M with firmware 16.08.* before 16.08...
CVE-2019-4695LOW3.3IBM Security Guardium Data Encryption (GDE) 3.0.0.2 allows web pages to be stored locally which can be read by another u...
CVE-2019-4713HIGH8.8IBM Security Guardium Data Encryption (GDE) 3.0.0.2 could allow a remote authenticated attacker to execute arbitrary com...
CVE-2019-4701MEDIUM5.3IBM Security Guardium Data Encryption (GDE) 3.0.0.2 is deployed with active debugging code that can create unintended en...
CVE-2019-4699LOW2.7IBM Security Guardium Data Encryption (GDE) 3.0.0.2 generates an error message that includes sensitive information about...
CVE-2019-4698HIGH7.5IBM Security Guardium Data Encryption (GDE) 3.0.0.2 does not require that users should have strong passwords by default,...
CVE-2019-4697MEDIUM6.5IBM Security Guardium Data Encryption (GDE) 3.0.0.2 stores user credentials in plain in clear text which can be read by ...
CVE-2019-4694CRITICAL9.8IBM Security Guardium Data Encryption (GDE) 3.0.0.2 contains hard-coded credentials, such as a password or cryptographic...
CVE-2019-4693MEDIUM4.4IBM Security Guardium Data Encryption (GDE) 3.0.0.2 stores user credentials in plain in clear text which can be read by ...
CVE-2019-4692MEDIUM5.3IBM Security Guardium Data Encryption (GDE) 3.0.0.2 discloses sensitive information to unauthorized users. The informati...
CVE-2019-4691MEDIUM5.4IBM Security Guardium Data Encryption (GDE) 3.0.0.2 is vulnerable to cross-site scripting. This vulnerability allows use...
CVE-2019-4689HIGH7.5IBM Security Guardium Data Encryption (GDE) 3.0.0.2 could allow a remote attacker to obtain sensitive information, cause...
CVE-2019-4688MEDIUM4.3IBM Security Guardium Data Encryption (GDE) 3.0.0.2 does not set the secure attribute on authorization tokens or session...
CVE-2019-4686MEDIUM5.3IBM Security Guardium Data Encryption (GDE) 3.0.0.2 does not set the secure attribute on authorization tokens or session...
CVE-2019-18847CRITICAL9.8Enterprise Access Client Auto-Updater allows for Remote Code Execution prior to version 2.0.1.
CVE-2019-14904HIGH7.3A flaw was found in the solaris_zone module from the Ansible Community modules. When setting the name for the zone on th...
CVE-2019-11862HIGH8.4The SSH service on ALEOS before 4.12.0, 4.9.5, 4.4.9 allows traffic proxying.
CVE-2019-11859HIGH8.8A buffer overflow exists in the SMS handler API of ALEOS before 4.13.0, 4.9.5, 4.9.4 that may allow code execution as ro...
CVE-2019-11858HIGH7.2Multiple buffer overflow vulnerabilities exist in the AceManager Web API of ALEOS before 4.13.0, 4.9.5, and 4.4.9.
CVE-2019-11857MEDIUM4.9Lack of input sanitization in AceManager of ALEOS before 4.12.0, 4.9.5 and 4.4.9 allows disclosure of sensitive system i...
CVE-2019-11856LOW3.8A nonce reuse vulnerability exists in the ACEView service of ALEOS before 4.13.0, 4.9.5, and 4.4.9 allowing message repl...
CVE-2019-11855CRITICAL9.8An RPC server is enabled by default on the gateway's LAN of ALEOS before 4.12.0, 4.9.5, and 4.4.9.

Check if your code is affected by 2019 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now