2019 CVE Vulnerabilities
17,619 CVEs published in 2019.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2019-14856 | MEDIUM | 6.5 | 1.6% | Nov 26, 2019 | ansible before versions 2.8.6, 2.7.14, 2.6.20 is vulnerable to a None |
| CVE-2019-14857 | MEDIUM | 6.1 | 1.5% | Nov 26, 2019 | A flaw was found in mod_auth_openidc before version 2.4.0.1. An open redirect issue exists in URLs with trailing slashes... |
| CVE-2019-16002 | MEDIUM | 6.5 | 0.7% | Nov 26, 2019 | A vulnerability in the vManage web-based UI (web UI) of the Cisco SD-WAN Solution could allow an unauthenticated, remote... |
| CVE-2019-16001 | MEDIUM | 5.3 | 0.4% | Nov 26, 2019 | A vulnerability in the loading mechanism of specific dynamic link libraries in Cisco Webex Teams for Windows could allow... |
| CVE-2019-15998 | MEDIUM | 5.3 | 0.7% | Nov 26, 2019 | A vulnerability in the access-control logic of the NETCONF over Secure Shell (SSH) of Cisco IOS XR Software may allow co... |
| CVE-2019-15997 | MEDIUM | 6.7 | 0.7% | Nov 26, 2019 | A vulnerability in Cisco DNA Spaces: Connector could allow an authenticated, local attacker to perform a command injecti... |
| CVE-2019-15996 | MEDIUM | 6.7 | 0.5% | Nov 26, 2019 | A vulnerability in Cisco DNA Spaces: Connector could allow an authenticated, local attacker to elevate privileges and ex... |
| CVE-2019-15995 | MEDIUM | 6.5 | 1.1% | Nov 26, 2019 | A vulnerability in the web UI of Cisco DNA Spaces: Connector could allow an authenticated, remote attacker to execute ar... |
| CVE-2019-15994 | MEDIUM | 6.1 | 0.8% | Nov 26, 2019 | A vulnerability in the web-based management interface of Cisco Stealthwatch Enterprise could allow an unauthenticated, r... |
| CVE-2019-15990 | MEDIUM | 5.3 | 1.2% | Nov 26, 2019 | A vulnerability in the web-based management interface of certain Cisco Small Business RV Series Routers could allow an u... |
| CVE-2019-15988 | MEDIUM | 5.3 | 1.0% | Nov 26, 2019 | A vulnerability in the antispam protection mechanisms of Cisco AsyncOS Software for Cisco Email Security Appliance (ESA)... |
| CVE-2019-15987 | MEDIUM | 5.3 | 1.6% | Nov 26, 2019 | A vulnerability in web interface of the Cisco Webex Event Center, Cisco Webex Meeting Center, Cisco Webex Support Center... |
| CVE-2019-15986 | MEDIUM | 6.7 | 0.4% | Nov 26, 2019 | A vulnerability in the CLI of Cisco Unity Express could allow an authenticated, local attacker to inject arbitrary comma... |
| CVE-2019-15971 | MEDIUM | 4.3 | 0.5% | Nov 26, 2019 | A vulnerability in the MP3 detection engine of Cisco AsyncOS Software for Cisco Email Security Appliance (ESA) could all... |
| CVE-2019-15968 | MEDIUM | 5.4 | 0.6% | Nov 26, 2019 | A vulnerability in the web-based management interface of Cisco Unified Communications Domain Manager (Unified CDM) could... |
| CVE-2019-15973 | MEDIUM | 6.1 | 0.8% | Nov 26, 2019 | A vulnerability in the web-based management interface of Cisco Industrial Network Director (IND) could allow an unauthen... |
| CVE-2019-15967 | MEDIUM | 4.4 | 0.3% | Nov 26, 2019 | A vulnerability in the CLI of Cisco TelePresence Collaboration Endpoint (CE) and Cisco RoomOS Software could allow an au... |
| CVE-2019-15960 | MEDIUM | 5.4 | 1.3% | Nov 26, 2019 | A vulnerability in the Webex Network Recording Admin page of Cisco Webex Meetings could allow an authenticated, remote a... |
| CVE-2019-15276 | MEDIUM | 6.5 | 46.3% | Nov 26, 2019 | A vulnerability in the web interface of Cisco Wireless LAN Controller Software could allow a low-privileged, authenticat... |
| CVE-2019-18241 | MEDIUM | 6.5 | 0.3% | Nov 26, 2019 | In Philips IntelliBridge EC40 and EC80, IntelliBridge EC40 Hub all versions, and IntelliBridge EC80 Hub all versions, th... |
| CVE-2019-10771 | MEDIUM | 6.1 | 0.7% | Nov 25, 2019 | Characters in the GET url path are not properly escaped and can be reflected in the server response. |
| CVE-2019-17632 | MEDIUM | 6.1 | 1.9% | Nov 25, 2019 | In Eclipse Jetty versions 9.4.21.v20190926, 9.4.22.v20191022, and 9.4.23.v20191118, the generation of default unhandled ... |
| CVE-2019-5826 | MEDIUM | 6.5 | 1.0% | Nov 25, 2019 | Use after free in IndexedDB in Google Chrome prior to 73.0.3683.86 allowed a remote attacker who had compromised the ren... |
| CVE-2019-5825 | MEDIUM | 6.5 | 55.9% | Nov 25, 2019 | Out of bounds write in JavaScript in Google Chrome prior to 73.0.3683.86 allowed a remote attacker to potentially exploi... |
| CVE-2019-4406 | MEDIUM | 4.4 | 0.3% | Nov 25, 2019 | IBM Spectrum Protect Backup-Archive Client 7.1 and 8.1 may be vulnerable to a denial of service attack due to a timing i... |
Check if your code is affected by 2019 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now