2019 CVE Vulnerabilities
17,619 CVEs published in 2019.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2019-4307 | MEDIUM | 5.5 | 0.3% | Oct 29, 2019 | IBM Security Guardium Big Data Intelligence (SonarG) 4.0 stores user credentials in plain in clear text which can be rea... |
| CVE-2019-4306 | MEDIUM | 6.5 | 1.0% | Oct 29, 2019 | IBM Security Guardium Big Data Intelligence (SonarG) 4.0 specifies permissions for a security-critical resource which co... |
| CVE-2019-5538 | MEDIUM | 5.9 | 0.7% | Oct 28, 2019 | Sensitive information disclosure vulnerability resulting from a lack of certificate validation during the File-Based Bac... |
| CVE-2019-5537 | MEDIUM | 5.9 | 0.7% | Oct 28, 2019 | Sensitive information disclosure vulnerability resulting from a lack of certificate validation during the File-Based Bac... |
| CVE-2019-5536 | MEDIUM | 6.5 | 2.1% | Oct 28, 2019 | VMware ESXi (6.7 before ESXi670-201908101-SG and 6.5 before ESXi650-201910401-SG), Workstation (15.x before 15.5.0) and ... |
| CVE-2019-17224 | MEDIUM | 5.3 | 1.2% | Oct 28, 2019 | The web interface of the Compal Broadband CH7465LG modem (version CH7465LG-NCIP-6.12.18.25-2p6-NOSH) is vulnerable to a ... |
| CVE-2019-18466 | MEDIUM | 5.5 | 1.5% | Oct 28, 2019 | An issue was discovered in Podman in libpod before 1.6.0. It resolves a symlink in the host context during a copy operat... |
| CVE-2019-14928 | MEDIUM | 5.4 | 44.1% | Oct 28, 2019 | An issue was discovered on Mitsubishi Electric Europe B.V. ME-RTU devices through 2.02 and INEA ME-RTU devices through 3... |
| CVE-2019-14925 | MEDIUM | 6.5 | 1.3% | Oct 28, 2019 | An issue was discovered on Mitsubishi Electric Europe B.V. ME-RTU devices through 2.02 and INEA ME-RTU devices through 3... |
| CVE-2019-18221 | MEDIUM | 6.1 | 0.7% | Oct 25, 2019 | CoreHR Core Portal before 27.0.7 allows stored XSS. |
| CVE-2019-17143 | MEDIUM | 4.3 | 3.9% | Oct 25, 2019 | This vulnerability allows remote attackers to disclose sensitive information on affected installations of Foxit PhantomP... |
| CVE-2019-17138 | MEDIUM | 4.3 | 8.2% | Oct 25, 2019 | This vulnerability allows remote attackers to disclose sensitive information on affected installations of Foxit Studio P... |
| CVE-2019-13546 | MEDIUM | 6.8 | 0.4% | Oct 25, 2019 | In IntelliSpace Perinatal, Versions K and prior, a vulnerability within the IntelliSpace Perinatal application environme... |
| CVE-2019-13525 | MEDIUM | 5.3 | 1.3% | Oct 25, 2019 | In IP-AK2 Access Control Panel Version 1.04.07 and prior, the integrated web server of the affected devices could allow ... |
| CVE-2019-4461 | MEDIUM | 5.4 | 0.6% | Oct 25, 2019 | IBM Cloud Orchestrator 2.4 through 2.4.0.5 and 2.5 through 2.5.0.9 is vulnerable to HTTP Response Splitting caused by im... |
| CVE-2019-4400 | MEDIUM | 4.3 | 1.4% | Oct 25, 2019 | IBM Cloud Orchestrator 2.4 through 2.4.0.5 and 2.5 through 2.5.0.9 could allow a remote attacker to traverse directories... |
| CVE-2019-4396 | MEDIUM | 5.4 | 0.7% | Oct 25, 2019 | IBM Cloud Orchestrator 2.4 through 2.4.0.5 and 2.5 through 2.5.0.9 is vulnerable to HTTP response splitting attacks, cau... |
| CVE-2019-8234 | MEDIUM | 6.5 | 2.1% | Oct 25, 2019 | Adobe Experience Manager versions 6.4, 6.3 and 6.2 have a cross-site request forgery vulnerability. Successful exploitat... |
| CVE-2019-8085 | MEDIUM | 6.1 | 1.5% | Oct 25, 2019 | Adobe Experience Manager versions 6.5, 6.4, 6.3 and 6.2 have a reflected cross site scripting vulnerability. Successful ... |
| CVE-2019-8084 | MEDIUM | 6.1 | 1.5% | Oct 25, 2019 | Adobe Experience Manager versions 6.5, 6.4, 6.3 and 6.2 have a reflected cross site scripting vulnerability. Successful ... |
| CVE-2019-8083 | MEDIUM | 6.1 | 1.5% | Oct 25, 2019 | Adobe Experience Manager versions 6.5, 6.4 and 6.3 have a cross site scripting vulnerability. Successful exploitation co... |
| CVE-2019-18419 | MEDIUM | 6.1 | 0.8% | Oct 24, 2019 | A cross-site scripting (XSS) vulnerability in index.php in ClonOS WEB control panel 19.09 allows remote attackers to inj... |
| CVE-2019-8080 | MEDIUM | 6.1 | 1.8% | Oct 24, 2019 | Adobe Experience Manager versions 6.4 and 6.3 have a stored cross site scripting vulnerability. Successful exploitation ... |
| CVE-2019-8079 | MEDIUM | 6.1 | 1.5% | Oct 24, 2019 | Adobe Experience Manager versions 6.4, 6.3, 6.2, 6.1, and 6.0 have a stored cross site scripting vulnerability. Successf... |
| CVE-2019-8078 | MEDIUM | 6.1 | 1.6% | Oct 24, 2019 | Adobe Experience Manager versions 6.4, 6.3 and 6.2 have a reflected cross site scripting vulnerability. Successful explo... |
Check if your code is affected by 2019 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now