2019 CVE Vulnerabilities
17,619 CVEs published in 2019.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2019-5268 | HIGH | 8.1 | 0.4% | Nov 29, 2019 | Some Huawei home routers have an input validation vulnerability. Due to input parameter is not correctly verified, an at... |
| CVE-2019-5269 | HIGH | 7.8 | 0.2% | Nov 29, 2019 | Some Huawei home routers have an improper authorization vulnerability. Due to improper authorization of certain programs... |
| CVE-2019-5232 | HIGH | 7.5 | 1.0% | Nov 29, 2019 | There is a use of insufficiently random values vulnerability in Huawei ViewPoint products. An unauthenticated, remote at... |
| CVE-2019-5225 | HIGH | 7.8 | 0.8% | Nov 29, 2019 | P30, Mate 20, P30 Pro smartphones with software of versions earlier than ELLE-AL00B 9.1.0.193(C00E190R1P21), versions ea... |
| CVE-2019-5218 | HIGH | 8.8 | 0.4% | Nov 29, 2019 | There is an insufficient authentication vulnerability in Huawei Band 2 and Honor Band 3. The band does not sufficiently ... |
| CVE-2019-5210 | HIGH | 7.8 | 0.3% | Nov 29, 2019 | Nova 5i pro and Nova 5 smartphones with versions earlier than 9.1.1.190(C00E190R6P2)and Versions earlier than 9.1.1.175(... |
| CVE-2019-18922 | HIGH | 7.5 | 24.7% | Nov 29, 2019 | A Directory Traversal in the Web interface of the Allied Telesis AT-GS950/8 until Firmware AT-S107 V.1.1.3 [1.00.047] al... |
| CVE-2019-16767 | HIGH | 7.2 | 0.8% | Nov 29, 2019 | The admin sys mode is now conditional and dedicated for the special case. By default, since ezmaster@5.2.11 no instance ... |
| CVE-2019-19378 | HIGH | 7.8 | 2.3% | Nov 29, 2019 | In the Linux kernel 5.0.21, mounting a crafted btrfs filesystem image can lead to slab-out-of-bounds write access in ind... |
| CVE-2019-16766 | HIGH | 8.8 | 1.2% | Nov 29, 2019 | When using wagtail-2fa before 1.3.0, if someone gains access to someone's Wagtail login credentials, they can log into t... |
| CVE-2019-19377 | HIGH | 7.8 | 3.4% | Nov 29, 2019 | In the Linux kernel 5.0.21, mounting a crafted btrfs filesystem image, performing some operations, and unmounting can le... |
| CVE-2019-19372 | HIGH | 7.5 | 1.5% | Nov 28, 2019 | A downloadFile.php download_file path traversal vulnerability in rConfig through 3.9.3 allows attackers to list files in... |
| CVE-2019-18276 | HIGH | 7.8 | 2.6% | Nov 28, 2019 | An issue was discovered in disable_priv_mode in shell.c in GNU Bash through 5.0 patch 11. By default, if Bash is run wit... |
| CVE-2019-18247 | HIGH | 7.5 | 1.6% | Nov 27, 2019 | An attacker may use a specially crafted message to force Relion 650 series (versions 1.3.0.5 and prior) or Relion 670 se... |
| CVE-2019-6673 | HIGH | 7.5 | 1.0% | Nov 27, 2019 | On versions 15.0.0-15.0.1 and 14.0.0-14.1.2, when the BIG-IP is configured in HTTP/2 Full Proxy mode, specifically craft... |
| CVE-2019-6672 | HIGH | 7.5 | 1.2% | Nov 27, 2019 | On BIG-IP AFM 15.0.0-15.0.1, 14.0.0-14.1.2, and 13.1.0-13.1.3.1, when bad-actor detection is configured on a wildcard vi... |
| CVE-2019-6671 | HIGH | 7.5 | 1.0% | Nov 27, 2019 | On BIG-IP 15.0.0-15.0.1, 14.1.0-14.1.2, 14.0.0-14.0.1, and 13.1.0-13.1.3.1, under certain conditions tmm may leak memory... |
| CVE-2019-6669 | HIGH | 7.5 | 1.0% | Nov 27, 2019 | On BIG-IP 15.0.0-15.0.1, 14.1.0-14.1.2, 14.0.0-14.0.1, 13.1.0-13.1.3.1, 12.1.0-12.1.5, and 11.5.1-11.6.5.1, undisclosed ... |
| CVE-2019-6667 | HIGH | 7.5 | 1.0% | Nov 27, 2019 | On BIG-IP 15.0.0-15.0.1, 14.1.0-14.1.0.5, 14.0.0-14.0.0.4, 13.1.0-13.1.1.5, 12.1.0-12.1.4.1, and 11.5.1-11.6.5, under ce... |
| CVE-2019-6666 | HIGH | 7.5 | 1.0% | Nov 27, 2019 | On BIG-IP 15.0.0-15.0.1, 14.1.0-14.1.0.5, 14.0.0-14.0.0.4, and 13.1.0-13.1.1.4, the TMM process may produce a core file ... |
| CVE-2019-6674 | HIGH | 7.5 | 1.0% | Nov 27, 2019 | On F5 SSL Orchestrator 15.0.0-15.0.1 and 14.0.0-14.1.2, TMM may crash when processing SSLO data in a service-chaining co... |
| CVE-2019-15705 | HIGH | 7.5 | 1.3% | Nov 27, 2019 | An Improper Input Validation vulnerability in the SSL VPN portal of FortiOS versions 6.2.1 and below, and 6.0.6 and belo... |
| CVE-2019-10220 | HIGH | 8.8 | 5.1% | Nov 27, 2019 | Linux kernel CIFS implementation, version 4.9.0 is vulnerable to a relative paths injection in directory entry lists. |
| CVE-2019-15300 | HIGH | 8.8 | 2.0% | Nov 27, 2019 | A problem was found in Centreon Web through 19.04.3. An authenticated SQL injection is present in the page include/Admin... |
| CVE-2019-15298 | HIGH | 8.8 | 26.6% | Nov 27, 2019 | A problem was found in Centreon Web through 19.04.3. An authenticated command injection is present in the page include/c... |
Check if your code is affected by 2019 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now