2019 CVE Vulnerabilities

17,619 CVEs published in 2019.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2019-4307MEDIUM5.5IBM Security Guardium Big Data Intelligence (SonarG) 4.0 stores user credentials in plain in clear text which can be rea...
CVE-2019-4306MEDIUM6.5IBM Security Guardium Big Data Intelligence (SonarG) 4.0 specifies permissions for a security-critical resource which co...
CVE-2019-5538MEDIUM5.9Sensitive information disclosure vulnerability resulting from a lack of certificate validation during the File-Based Bac...
CVE-2019-5537MEDIUM5.9Sensitive information disclosure vulnerability resulting from a lack of certificate validation during the File-Based Bac...
CVE-2019-5536MEDIUM6.5VMware ESXi (6.7 before ESXi670-201908101-SG and 6.5 before ESXi650-201910401-SG), Workstation (15.x before 15.5.0) and ...
CVE-2019-17224MEDIUM5.3The web interface of the Compal Broadband CH7465LG modem (version CH7465LG-NCIP-6.12.18.25-2p6-NOSH) is vulnerable to a ...
CVE-2019-18466MEDIUM5.5An issue was discovered in Podman in libpod before 1.6.0. It resolves a symlink in the host context during a copy operat...
CVE-2019-14928MEDIUM5.4An issue was discovered on Mitsubishi Electric Europe B.V. ME-RTU devices through 2.02 and INEA ME-RTU devices through 3...
CVE-2019-14925MEDIUM6.5An issue was discovered on Mitsubishi Electric Europe B.V. ME-RTU devices through 2.02 and INEA ME-RTU devices through 3...
CVE-2019-18221MEDIUM6.1CoreHR Core Portal before 27.0.7 allows stored XSS.
CVE-2019-17143MEDIUM4.3This vulnerability allows remote attackers to disclose sensitive information on affected installations of Foxit PhantomP...
CVE-2019-17138MEDIUM4.3This vulnerability allows remote attackers to disclose sensitive information on affected installations of Foxit Studio P...
CVE-2019-13546MEDIUM6.8In IntelliSpace Perinatal, Versions K and prior, a vulnerability within the IntelliSpace Perinatal application environme...
CVE-2019-13525MEDIUM5.3In IP-AK2 Access Control Panel Version 1.04.07 and prior, the integrated web server of the affected devices could allow ...
CVE-2019-4461MEDIUM5.4IBM Cloud Orchestrator 2.4 through 2.4.0.5 and 2.5 through 2.5.0.9 is vulnerable to HTTP Response Splitting caused by im...
CVE-2019-4400MEDIUM4.3IBM Cloud Orchestrator 2.4 through 2.4.0.5 and 2.5 through 2.5.0.9 could allow a remote attacker to traverse directories...
CVE-2019-4396MEDIUM5.4IBM Cloud Orchestrator 2.4 through 2.4.0.5 and 2.5 through 2.5.0.9 is vulnerable to HTTP response splitting attacks, cau...
CVE-2019-8234MEDIUM6.5Adobe Experience Manager versions 6.4, 6.3 and 6.2 have a cross-site request forgery vulnerability. Successful exploitat...
CVE-2019-8085MEDIUM6.1Adobe Experience Manager versions 6.5, 6.4, 6.3 and 6.2 have a reflected cross site scripting vulnerability. Successful ...
CVE-2019-8084MEDIUM6.1Adobe Experience Manager versions 6.5, 6.4, 6.3 and 6.2 have a reflected cross site scripting vulnerability. Successful ...
CVE-2019-8083MEDIUM6.1Adobe Experience Manager versions 6.5, 6.4 and 6.3 have a cross site scripting vulnerability. Successful exploitation co...
CVE-2019-18419MEDIUM6.1A cross-site scripting (XSS) vulnerability in index.php in ClonOS WEB control panel 19.09 allows remote attackers to inj...
CVE-2019-8080MEDIUM6.1Adobe Experience Manager versions 6.4 and 6.3 have a stored cross site scripting vulnerability. Successful exploitation ...
CVE-2019-8079MEDIUM6.1Adobe Experience Manager versions 6.4, 6.3, 6.2, 6.1, and 6.0 have a stored cross site scripting vulnerability. Successf...
CVE-2019-8078MEDIUM6.1Adobe Experience Manager versions 6.4, 6.3 and 6.2 have a reflected cross site scripting vulnerability. Successful explo...

Check if your code is affected by 2019 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now