2019 CVE Vulnerabilities

17,620 CVEs published in 2019.

CVE IDSeverityCVSSDescription
CVE-2019-19218HIGH7.5BMC Control-M/Agent 7.0.00.000 has Insecure Password Storage.
CVE-2019-19217HIGH8.8BMC Control-M/Agent 7.0.00.000 allows OS Command Injection.
CVE-2019-19216HIGH8.8BMC Control-M/Agent 7.0.00.000 has an Insecure File Copy.
CVE-2019-19215HIGH8.8A buffer overflow vulnerability in BMC Control-M/Agent 7.0.00.000 when the On-Do action destination is Mail and the Cont...
CVE-2019-5623CRITICAL9.8Accellion File Transfer Appliance version FTA_8_0_540 suffers from an instance of CWE-77: Improper Neutralization of Spe...
CVE-2019-5622CRITICAL9.8Accellion File Transfer Appliance version FTA_8_0_540 suffers from an instance of CWE-798: Use of Hard-coded Credentials...
CVE-2019-5621HIGH7.8ABBS Software Audio Media Player version 3.1 suffers from an instance of CWE-121: Stack-based Buffer Overflow.
CVE-2019-5620CRITICAL9.8ABB MicroSCADA Pro SYS600 version 9.3 suffers from an instance of CWE-306: Missing Authentication for Critical Function.
CVE-2019-5619CRITICAL9.8AASync.com AASync version 2.2.1.0 suffers from an instance of CWE-121: Stack-based Buffer Overflow.
CVE-2019-5618HIGH7.8A-PDF WAV to MP3 version 1.0.0 suffers from an instance of CWE-121: Stack-based Buffer Overflow.
CVE-2019-16011HIGH7.8A vulnerability in the CLI of Cisco IOS XE SD-WAN Software could allow an authenticated, local attacker to inject arbitr...
CVE-2019-19165HIGH7.2AxECM.cab(ActiveX Control) in Inogard Ebiz4u contains a vulnerability that could allow remote files to be downloaded and...
CVE-2019-4288MEDIUM4.3IBM Maximo Anywhere 7.6.2.0, 7.6.2.1, 7.6.3.0, and 7.6.3.1 could disclose highly senstiive user information to an authen...
CVE-2019-4286MEDIUM4.3IBM Maximo Anywhere 7.6.2.0, 7.6.2.1, 7.6.3.0, and 7.6.3.1 could disclose highly senstiive user information to an authen...
CVE-2019-20781HIGH7.8An issue was discovered in LG Bridge before April 2019 on Windows. DLL Hijacking can occur.
CVE-2019-16653HIGH8.8An application plugin in Genius Bytes Genius Server (Genius CDDS) 3.2.2 allows remote authenticated users to gain admin ...
CVE-2019-7634MEDIUM5.4SUAP V2 allows XSS during the update of user information.
CVE-2019-16652HIGH7.2The BPM component in Genius Bytes Genius Server (Genius CDDS) 3.2.2 allows remote authenticated users to execute arbitra...
CVE-2019-20792MEDIUM6.8OpenSC before 0.20.0 has a double free in coolkey_free_private_data because coolkey_add_object in libopensc/card-coolkey...
CVE-2019-19102HIGH7.5A directory traversal vulnerability in SharpZipLib used in the upgrade service in B&R Automation Studio versions 4.0.x, ...
CVE-2019-19101MEDIUM5.9A missing secure communication definition and an incomplete TLS validation in the upgrade service in B&R Automation Stud...
CVE-2019-19100HIGH7.1A privilege escalation vulnerability in the upgrade service in B&R Automation Studio versions 4.0.x, 4.1.x, 4.2.x, < 4.3...
CVE-2019-5614CRITICAL9.8In FreeBSD 12.1-STABLE before r356035, 12.1-RELEASE before 12.1-RELEASE-p4, 11.3-STABLE before r356036, and 11.3-RELEASE...
CVE-2019-15874CRITICAL9.8In FreeBSD 12.1-STABLE before r356035, 12.1-RELEASE before 12.1-RELEASE-p4, 11.3-STABLE before r356036, and 11.3-RELEASE...
CVE-2019-15877MEDIUM5.5In FreeBSD 12.1-STABLE before r356606 and 12.1-RELEASE before 12.1-RELEASE-p3, driver specific ioctl command handlers in...

Check if your code is affected by 2019 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now