2019 CVE Vulnerabilities
17,620 CVEs published in 2019.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2019-19218 | HIGH | 7.5 | 1.0% | Apr 30, 2020 | BMC Control-M/Agent 7.0.00.000 has Insecure Password Storage. |
| CVE-2019-19217 | HIGH | 8.8 | 1.8% | Apr 30, 2020 | BMC Control-M/Agent 7.0.00.000 allows OS Command Injection. |
| CVE-2019-19216 | HIGH | 8.8 | 1.1% | Apr 30, 2020 | BMC Control-M/Agent 7.0.00.000 has an Insecure File Copy. |
| CVE-2019-19215 | HIGH | 8.8 | 1.6% | Apr 30, 2020 | A buffer overflow vulnerability in BMC Control-M/Agent 7.0.00.000 when the On-Do action destination is Mail and the Cont... |
| CVE-2019-5623 | CRITICAL | 9.8 | 1.6% | Apr 29, 2020 | Accellion File Transfer Appliance version FTA_8_0_540 suffers from an instance of CWE-77: Improper Neutralization of Spe... |
| CVE-2019-5622 | CRITICAL | 9.8 | 1.1% | Apr 29, 2020 | Accellion File Transfer Appliance version FTA_8_0_540 suffers from an instance of CWE-798: Use of Hard-coded Credentials... |
| CVE-2019-5621 | HIGH | 7.8 | 2.2% | Apr 29, 2020 | ABBS Software Audio Media Player version 3.1 suffers from an instance of CWE-121: Stack-based Buffer Overflow. |
| CVE-2019-5620 | CRITICAL | 9.8 | 70.1% | Apr 29, 2020 | ABB MicroSCADA Pro SYS600 version 9.3 suffers from an instance of CWE-306: Missing Authentication for Critical Function. |
| CVE-2019-5619 | CRITICAL | 9.8 | 4.7% | Apr 29, 2020 | AASync.com AASync version 2.2.1.0 suffers from an instance of CWE-121: Stack-based Buffer Overflow. |
| CVE-2019-5618 | HIGH | 7.8 | 2.2% | Apr 29, 2020 | A-PDF WAV to MP3 version 1.0.0 suffers from an instance of CWE-121: Stack-based Buffer Overflow. |
| CVE-2019-16011 | HIGH | 7.8 | 0.4% | Apr 29, 2020 | A vulnerability in the CLI of Cisco IOS XE SD-WAN Software could allow an authenticated, local attacker to inject arbitr... |
| CVE-2019-19165 | HIGH | 7.2 | 0.6% | Apr 29, 2020 | AxECM.cab(ActiveX Control) in Inogard Ebiz4u contains a vulnerability that could allow remote files to be downloaded and... |
| CVE-2019-4288 | MEDIUM | 4.3 | 0.3% | Apr 29, 2020 | IBM Maximo Anywhere 7.6.2.0, 7.6.2.1, 7.6.3.0, and 7.6.3.1 could disclose highly senstiive user information to an authen... |
| CVE-2019-4286 | MEDIUM | 4.3 | 0.3% | Apr 29, 2020 | IBM Maximo Anywhere 7.6.2.0, 7.6.2.1, 7.6.3.0, and 7.6.3.1 could disclose highly senstiive user information to an authen... |
| CVE-2019-20781 | HIGH | 7.8 | 0.3% | Apr 29, 2020 | An issue was discovered in LG Bridge before April 2019 on Windows. DLL Hijacking can occur. |
| CVE-2019-16653 | HIGH | 8.8 | 2.0% | Apr 29, 2020 | An application plugin in Genius Bytes Genius Server (Genius CDDS) 3.2.2 allows remote authenticated users to gain admin ... |
| CVE-2019-7634 | MEDIUM | 5.4 | 0.6% | Apr 29, 2020 | SUAP V2 allows XSS during the update of user information. |
| CVE-2019-16652 | HIGH | 7.2 | 2.4% | Apr 29, 2020 | The BPM component in Genius Bytes Genius Server (Genius CDDS) 3.2.2 allows remote authenticated users to execute arbitra... |
| CVE-2019-20792 | MEDIUM | 6.8 | 0.7% | Apr 29, 2020 | OpenSC before 0.20.0 has a double free in coolkey_free_private_data because coolkey_add_object in libopensc/card-coolkey... |
| CVE-2019-19102 | HIGH | 7.5 | 1.2% | Apr 29, 2020 | A directory traversal vulnerability in SharpZipLib used in the upgrade service in B&R Automation Studio versions 4.0.x, ... |
| CVE-2019-19101 | MEDIUM | 5.9 | 0.5% | Apr 29, 2020 | A missing secure communication definition and an incomplete TLS validation in the upgrade service in B&R Automation Stud... |
| CVE-2019-19100 | HIGH | 7.1 | 0.3% | Apr 29, 2020 | A privilege escalation vulnerability in the upgrade service in B&R Automation Studio versions 4.0.x, 4.1.x, 4.2.x, < 4.3... |
| CVE-2019-5614 | CRITICAL | 9.8 | 1.3% | Apr 29, 2020 | In FreeBSD 12.1-STABLE before r356035, 12.1-RELEASE before 12.1-RELEASE-p4, 11.3-STABLE before r356036, and 11.3-RELEASE... |
| CVE-2019-15874 | CRITICAL | 9.8 | 1.3% | Apr 29, 2020 | In FreeBSD 12.1-STABLE before r356035, 12.1-RELEASE before 12.1-RELEASE-p4, 11.3-STABLE before r356036, and 11.3-RELEASE... |
| CVE-2019-15877 | MEDIUM | 5.5 | 0.2% | Apr 28, 2020 | In FreeBSD 12.1-STABLE before r356606 and 12.1-RELEASE before 12.1-RELEASE-p3, driver specific ioctl command handlers in... |
Check if your code is affected by 2019 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now