2019 CVE Vulnerabilities

17,618 CVEs published in 2019.

Filter:CRITICALClear
CVE IDSeverityCVSSDescription
CVE-2019-25763CRITICAL9.3WordPress Ultimate Addons for Beaver Builder 1.2.4.1 contains an authentication bypass vulnerability that allows attacke...
CVE-2019-25741CRITICAL9.3Mobatek MobaXterm 12.1 contains a structured exception handling (SEH) based buffer overflow vulnerability in the usernam...
CVE-2019-25738CRITICAL9.3WordPress Hybrid Composer 1.4.6 contains an unauthenticated settings change vulnerability that allows unauthenticated at...
CVE-2019-25729CRITICAL9.3PDF Signer 3.0 contains a server-side template injection vulnerability that allows unauthenticated attackers to execute ...
CVE-2019-25727CRITICAL9.3WordPress Plugin ad manager wd 1.0.11 contains an arbitrary file download vulnerability that allows unauthenticated atta...
CVE-2019-25714CRITICAL9.3Seeyon OA A8 contains an unauthenticated arbitrary file write vulnerability in the /seeyon/htmlofficeservlet endpoint th...
CVE-2019-25709CRITICAL9.3CF Image Hosting Script 1.6.5 allows unauthenticated attackers to download and decode the application database by access...
CVE-2019-25687CRITICAL9.3Pegasus CMS 1.0 contains a remote code execution vulnerability in the extra_fields.php plugin that allows unauthenticate...
CVE-2019-25651CRITICAL9Ubiquiti UniFi Network Controller prior to 5.10.12 (excluding 5.6.42), UAP FW prior to 4.0.6, UAP-AC, UAP-AC v2, and UAP...
CVE-2019-25646CRITICAL9.3Tabs Mail Carrier 2.5.1 contains a buffer overflow vulnerability in the MAIL FROM SMTP command that allows remote attack...
CVE-2019-25628CRITICAL9.3Download Accelerator Plus DAP 10.0.6.0 contains a structured exception handler buffer overflow vulnerability that allows...
CVE-2019-25614CRITICAL9.3Free Float FTP 1.0 contains a buffer overflow vulnerability in the STOR command handler that allows remote attackers to ...
CVE-2019-25568CRITICAL9.3Memu Play 6.0.7 contains an insecure file permissions vulnerability that allows low-privilege users to escalate privileg...
CVE-2019-25487CRITICAL9.3SAPIDO RB-1732 V2.0.43 contains a remote command execution vulnerability that allows unauthenticated attackers to execut...
CVE-2019-25471CRITICAL9.3FileThingie 2.5.7 contains an arbitrary file upload vulnerability that allows attackers to upload malicious files by sen...
CVE-2019-25468CRITICAL9.3NetGain EM Plus 10.1.68 contains a remote code execution vulnerability that allows unauthenticated attackers to execute ...
CVE-2019-25441CRITICAL9.3thesystem 1.0 contains a command injection vulnerability that allows unauthenticated attackers to execute arbitrary syst...
CVE-2019-25364CRITICAL9.3MailCarrier 2.51 contains a buffer overflow vulnerability in the POP3 USER command that allows remote attackers to execu...
CVE-2019-25362CRITICAL9.3WMV to AVI MPEG DVD WMV Convertor 4.6.1217 contains a buffer overflow vulnerability that allows attackers to execute arb...
CVE-2019-25322CRITICAL9.3Heatmiser Netmonitor 3.03 contains a hardcoded credentials vulnerability in the networkSetup.htm page with predictable a...
CVE-2019-25296CRITICAL9.8The WP Cost Estimation plugin for WordPress is vulnerable to arbitrary file uploads and deletion due to missing file typ...
CVE-2019-25291CRITICAL9.3INIM Electronics Smartliving SmartLAN/G/SI <=6.x contains hard-coded credentials in its Linux distribution image that ca...
CVE-2019-25278CRITICAL9.1FaceSentry Access Control System 6.4.8 contains a cleartext transmission vulnerability that allows remote attackers to i...
CVE-2019-25241CRITICAL9.8FaceSentry Access Control System 6.4.8 contains a critical authentication vulnerability with hard-coded SSH credentials ...
CVE-2019-19144CRITICAL9.8XML External Entity Injection vulnerability in Quantum DXi6702 2.3.0.3 (11449-53631 Build304) devices via rest/Users?act...

Check if your code is affected by 2019 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now