2019 CVE Vulnerabilities
17,619 CVEs published in 2019.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2019-19499 | MEDIUM | 6.5 | 3.6% | Aug 28, 2020 | Grafana <= 6.4.3 has an Arbitrary File Read vulnerability, which could be exploited by an authenticated attacker that ha... |
| CVE-2019-18392 | — | — | — | Aug 28, 2020 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. No... |
| CVE-2019-5321 | HIGH | 8.8 | 2.4% | Aug 26, 2020 | Aruba Intelligent Edge Switch Series 2540, 2530, 2930F, 2930M, 2920, 5400R, and 3810M with firmware 16.08.* before 16.08... |
| CVE-2019-5320 | MEDIUM | 6.1 | 0.8% | Aug 26, 2020 | Aruba Intelligent Edge Switch Series 2540, 2530, 2930F, 2930M, 2920, 5400R, and 3810M with firmware 16.08.* before 16.08... |
| CVE-2019-4695 | LOW | 3.3 | 0.2% | Aug 26, 2020 | IBM Security Guardium Data Encryption (GDE) 3.0.0.2 allows web pages to be stored locally which can be read by another u... |
| CVE-2019-4713 | HIGH | 8.8 | 2.6% | Aug 26, 2020 | IBM Security Guardium Data Encryption (GDE) 3.0.0.2 could allow a remote authenticated attacker to execute arbitrary com... |
| CVE-2019-4701 | MEDIUM | 5.3 | 0.7% | Aug 26, 2020 | IBM Security Guardium Data Encryption (GDE) 3.0.0.2 is deployed with active debugging code that can create unintended en... |
| CVE-2019-4699 | LOW | 2.7 | 0.5% | Aug 26, 2020 | IBM Security Guardium Data Encryption (GDE) 3.0.0.2 generates an error message that includes sensitive information about... |
| CVE-2019-4698 | HIGH | 7.5 | 0.8% | Aug 26, 2020 | IBM Security Guardium Data Encryption (GDE) 3.0.0.2 does not require that users should have strong passwords by default,... |
| CVE-2019-4697 | MEDIUM | 6.5 | 0.5% | Aug 26, 2020 | IBM Security Guardium Data Encryption (GDE) 3.0.0.2 stores user credentials in plain in clear text which can be read by ... |
| CVE-2019-4694 | CRITICAL | 9.8 | 1.2% | Aug 26, 2020 | IBM Security Guardium Data Encryption (GDE) 3.0.0.2 contains hard-coded credentials, such as a password or cryptographic... |
| CVE-2019-4693 | MEDIUM | 4.4 | 0.2% | Aug 26, 2020 | IBM Security Guardium Data Encryption (GDE) 3.0.0.2 stores user credentials in plain in clear text which can be read by ... |
| CVE-2019-4692 | MEDIUM | 5.3 | 0.7% | Aug 26, 2020 | IBM Security Guardium Data Encryption (GDE) 3.0.0.2 discloses sensitive information to unauthorized users. The informati... |
| CVE-2019-4691 | MEDIUM | 5.4 | 0.4% | Aug 26, 2020 | IBM Security Guardium Data Encryption (GDE) 3.0.0.2 is vulnerable to cross-site scripting. This vulnerability allows use... |
| CVE-2019-4689 | HIGH | 7.5 | 0.6% | Aug 26, 2020 | IBM Security Guardium Data Encryption (GDE) 3.0.0.2 could allow a remote attacker to obtain sensitive information, cause... |
| CVE-2019-4688 | MEDIUM | 4.3 | 0.6% | Aug 26, 2020 | IBM Security Guardium Data Encryption (GDE) 3.0.0.2 does not set the secure attribute on authorization tokens or session... |
| CVE-2019-4686 | MEDIUM | 5.3 | 0.4% | Aug 26, 2020 | IBM Security Guardium Data Encryption (GDE) 3.0.0.2 does not set the secure attribute on authorization tokens or session... |
| CVE-2019-18847 | CRITICAL | 9.8 | 2.3% | Aug 26, 2020 | Enterprise Access Client Auto-Updater allows for Remote Code Execution prior to version 2.0.1. |
| CVE-2019-14904 | HIGH | 7.3 | 0.4% | Aug 26, 2020 | A flaw was found in the solaris_zone module from the Ansible Community modules. When setting the name for the zone on th... |
| CVE-2019-11862 | HIGH | 8.4 | 0.7% | Aug 21, 2020 | The SSH service on ALEOS before 4.12.0, 4.9.5, 4.4.9 allows traffic proxying. |
| CVE-2019-11859 | HIGH | 8.8 | 2.0% | Aug 21, 2020 | A buffer overflow exists in the SMS handler API of ALEOS before 4.13.0, 4.9.5, 4.9.4 that may allow code execution as ro... |
| CVE-2019-11858 | HIGH | 7.2 | 1.1% | Aug 21, 2020 | Multiple buffer overflow vulnerabilities exist in the AceManager Web API of ALEOS before 4.13.0, 4.9.5, and 4.4.9. |
| CVE-2019-11857 | MEDIUM | 4.9 | 2.1% | Aug 21, 2020 | Lack of input sanitization in AceManager of ALEOS before 4.12.0, 4.9.5 and 4.4.9 allows disclosure of sensitive system i... |
| CVE-2019-11856 | LOW | 3.8 | 1.0% | Aug 21, 2020 | A nonce reuse vulnerability exists in the ACEView service of ALEOS before 4.13.0, 4.9.5, and 4.4.9 allowing message repl... |
| CVE-2019-11855 | CRITICAL | 9.8 | 1.2% | Aug 21, 2020 | An RPC server is enabled by default on the gateway's LAN of ALEOS before 4.12.0, 4.9.5, and 4.4.9. |
Check if your code is affected by 2019 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now