VULNERABILITY REMEDIATION

CVE remediation guides

Move from asset identification to supported remediation and post-change verification while keeping source evidence visible.

These defensive guides do not provide exploit reproduction or bypass instructions.
01

Confirm exposure first

Match the product, version, installation path, and external exposure before treating a score as an action order.

02

Prefer supported fixes

Use vendor advisories and supported update paths. An unverified fixed-version field stays visibly unresolved.

03

Verify and retain rollback

Confirm version state, service health, access paths, logs, and rollback readiness after the change.

17,661 guide candidatesPage 1431 of 1472
Known exploitedHighResearch in progress
CVE-2019-9875

Sitecore CMS and Experience Platform (XP)

Affected
<= 9.1
Fixed
No verified fixed-version field is available yet
Known exploitedCriticalResearch in progress
CVE-2019-9874

Sitecore CMS and Experience Platform (XP)

Affected
>= 7.0 <= 7.2, >= 7.5 <= 8.2
Fixed
No verified fixed-version field is available yet
Known exploitedCriticalFixed-version data
CVE-2019-9670

Synacor Zimbra Collaboration Suite (ZCS)

Affected
>= 8.7.0 < 8.7.11, 8.7.11
Fixed
8.7.11
Known exploitedMediumFixed-version data
CVE-2018-13383

Fortinet FortiOS and FortiProxy

Affected
FortiOS 6.0.0 through 6.0.4, 5.6.0 through 5.6.10, 5.4.0 through 5.4.12, 5.2.14 and earlier, FortiProxy 2.0.0, 1.2.8 and earlier, < 1.2.9, 2.0.0, >= 5.2.0 < 5.2.15, >= 5.4.0 < 5.4.13, >= 5.6.0 < 5.6.11, >= 6.0.0 < 6.0.5
Fixed
1.2.9, 5.2.15, 5.4.13, 5.6.11, 6.0.5
Known exploitedCriticalResearch in progress
CVE-2018-7841

Schneider Electric U.motion Builder

Affected
U.motion Builder software version 1.3.4, 1.3.4
Fixed
No verified fixed-version field is available yet
Known exploitedCriticalFixed-version data
CVE-2019-11634

Citrix Workspace Application and Receiver for Windows

Affected
4.9, < 1904
Fixed
1904
Known exploitedHighResearch in progress
CVE-2019-0903

Microsoft Graphics Device Interface (GDI)

Affected
7 for 32-bit Systems Service Pack 1, 7 for x64-based Systems Service Pack 1, 8.1 for 32-bit systems, 8.1 for x64-based systems, RT 8.1, 10 for 32-bit Systems, 10 for x64-based Systems, 10 Version 1607 for 32-bit Systems, 10 Version 1607 for x64-based Systems, 10 Version 1703 for 32-bit Systems, 10 Version 1703 for x64-based Systems, 10 Version 1709 for 32-bit Systems, 10 Version 1709 for x64-based Systems, 10 Version 1803 for 32-bit Systems, 10 Version 1803 for x64-based Systems, 10 Version 1803 for ARM64-based Systems, 10 Version 1809 for 32-bit Systems, 10 Version 1809 for x64-based Systems, 10 Version 1809 for ARM64-based Systems, 10 Version 1709 for ARM64-based Systems
Fixed
No verified fixed-version field is available yet
Known exploitedHighResearch in progress
CVE-2019-0863

Microsoft Windows

Affected
7 for 32-bit Systems Service Pack 1, 7 for x64-based Systems Service Pack 1, 8.1 for 32-bit systems, 8.1 for x64-based systems, RT 8.1, 10 for 32-bit Systems, 10 for x64-based Systems, 10 Version 1607 for 32-bit Systems, 10 Version 1607 for x64-based Systems, 10 Version 1703 for 32-bit Systems, 10 Version 1703 for x64-based Systems, 10 Version 1709 for 32-bit Systems, 10 Version 1709 for x64-based Systems, 10 Version 1803 for 32-bit Systems, 10 Version 1803 for x64-based Systems, 10 Version 1803 for ARM64-based Systems, 10 Version 1809 for 32-bit Systems, 10 Version 1809 for x64-based Systems, 10 Version 1809 for ARM64-based Systems, 10 Version 1709 for ARM64-based Systems
Fixed
No verified fixed-version field is available yet
Known exploitedCriticalResearch in progress
CVE-2019-0708

Microsoft Remote Desktop Services

Affected
7 for 32-bit Systems Service Pack 1, 7 for x64-based Systems Service Pack 1, 2008 R2 for x64-based Systems Service Pack 1 (Core installation), 2008 R2 for Itanium-Based Systems Service Pack 1, 2008 R2 for x64-based Systems Service Pack 1, 2008 for 32-bit Systems Service Pack 2 (Core installation), 2008 for Itanium-Based Systems Service Pack 2, 2008 for 32-bit Systems Service Pack 2, 2008 for x64-based Systems Service Pack 2, 2008 for x64-based Systems Service Pack 2 (Core installation), r2, <= 2.3.2, v100r002c00, v100r002c10, v100r001c00, v200r001c01spc100, v200r002c00spc300, v200r002c10spc100, v100r001c30spc300, v100r001c30spc200
Fixed
No verified fixed-version field is available yet
Known exploitedCriticalResearch in progress
CVE-2018-14839

LG N1A1 NAS

Affected
3718.510
Fixed
No verified fixed-version field is available yet
Known exploitedCriticalFixed-version data
CVE-2019-3568

Meta Platforms WhatsApp

Affected
2.19.134, unspecified, 2.19.44, 2.19.51, 2.18.348, 2.18.15, < 2.18.15, < 2.18.348, < 2.19.51, < 2.19.134, < 2.19.44
Fixed
2.18.15, 2.18.348, 2.19.51, 2.19.134, 2.19.44
Known exploitedCriticalResearch in progress
CVE-2019-11510

Ivanti Pulse Connect Secure

Affected
8.2, 8.3, 9.0
Fixed
No verified fixed-version field is available yet