VULNERABILITY REMEDIATION

CVE remediation guides

Move from asset identification to supported remediation and post-change verification while keeping source evidence visible.

These defensive guides do not provide exploit reproduction or bypass instructions.
01

Confirm exposure first

Match the product, version, installation path, and external exposure before treating a score as an action order.

02

Prefer supported fixes

Use vendor advisories and supported update paths. An unverified fixed-version field stays visibly unresolved.

03

Verify and retain rollback

Confirm version state, service health, access paths, logs, and rollback readiness after the change.

17,661 guide candidatesPage 1433 of 1472
Known exploitedHighResearch in progress
CVE-2019-0808

Microsoft Win32k

Affected
7 for 32-bit Systems Service Pack 1, 7 for x64-based Systems Service Pack 1, 2008 R2 for x64-based Systems Service Pack 1 (Core installation), 2008 R2 for Itanium-Based Systems Service Pack 1, 2008 R2 for x64-based Systems Service Pack 1, 2008 for 32-bit Systems Service Pack 2 (Core installation), 2008 for Itanium-Based Systems Service Pack 2, 2008 for 32-bit Systems Service Pack 2, 2008 for x64-based Systems Service Pack 2, 2008 for x64-based Systems Service Pack 2 (Core installation), r2
Fixed
No verified fixed-version field is available yet
Known exploitedHighResearch in progress
CVE-2019-0797

Microsoft Win32k

Affected
2012, 2012 (Core installation), 2012 R2, 2012 R2 (Core installation), 2016, 2016 (Core installation), version 1709 (Core Installation), version 1803 (Core Installation), 2019, 2019 (Core installation), 8.1 for 32-bit systems, 8.1 for x64-based systems, RT 8.1, 10 for 32-bit Systems, 10 for x64-based Systems, 10 Version 1607 for 32-bit Systems, 10 Version 1607 for x64-based Systems, 10 Version 1703 for 32-bit Systems, 10 Version 1703 for x64-based Systems, 10 Version 1709 for 32-bit Systems
Fixed
No verified fixed-version field is available yet
Known exploitedMediumResearch in progress
CVE-2019-0703

Microsoft Windows

Affected
7 for 32-bit Systems Service Pack 1, 7 for x64-based Systems Service Pack 1, 8.1 for 32-bit systems, 8.1 for x64-based systems, RT 8.1, 10 for 32-bit Systems, 10 for x64-based Systems, 10 Version 1607 for 32-bit Systems, 10 Version 1607 for x64-based Systems, 10 Version 1703 for 32-bit Systems, 10 Version 1703 for x64-based Systems, 10 Version 1709 for 32-bit Systems, 10 Version 1709 for x64-based Systems, 10 Version 1803 for 32-bit Systems, 10 Version 1803 for x64-based Systems, 10 Version 1803 for ARM64-based Systems, 10 Version 1809 for 32-bit Systems, 10 Version 1709 for ARM64-based Systems, 2008 R2 for x64-based Systems Service Pack 1 (Core installation)
Fixed
No verified fixed-version field is available yet
Known exploitedHighResearch in progress
CVE-2019-0211

Apache HTTP Server

Affected
2.4.17 to 2.4.38, >= 2.4.17 <= 2.4.38, 28, 29, 30, 14.04, 16.04, 18.04, 18.10, 9.0, 15.0, 42.3, 1.0, 3.11, 3.11 ppc64le, 8.0, 8.1, 8.2, 8.4, 8.6
Fixed
No verified fixed-version field is available yet
Known exploitedHighResearch in progress
CVE-2019-11001

Reolink Multiple IP Cameras

Affected
<= 1.0.227
Fixed
No verified fixed-version field is available yet
Known exploitedHighFixed-version data
CVE-2018-4344

Apple Multiple Products

Affected
Versions prior to: iOS 12, macOS Mojave 10.14, tvOS 12, watchOS 5, < 12.0, < 10.14, < 5.0
Fixed
12.0, 10.14, 5.0
Known exploitedHighFixed-version data
CVE-2019-5418

Rails Ruby on Rails

Affected
5.2.2.1, 5.1.6.2, 5.0.7.2, 4.2.11.1, >= 3.0.0 < 4.2.11.1, >= 5.0.0 < 5.0.7.2, >= 5.1.0 < 5.1.6.2, >= 5.2.0 < 5.2.2.1, 8.0, 4.7, 15.0, 30, 4.6, 1.0
Fixed
4.2.11.1, 5.0.7.2, 5.1.6.2, 5.2.2.1
Known exploitedCriticalFixed-version data
CVE-2019-10068

Kentico Xperience

Affected
>= 9.0.0 <= 9.0.51, >= 10.0.0 < 10.0.52, >= 11.0.0 < 11.0.48, >= 12.0.0 < 12.0.15
Fixed
10.0.52, 11.0.48, 12.0.15
Known exploitedCriticalFixed-version data
CVE-2019-7609

Elastic Kibana

Affected
before 5.6.15 and 6.6.1, < 5.6.15, >= 6.0.0 < 6.6.1, 3.11, 4.1
Fixed
5.6.15, 6.6.1
Known exploitedCriticalFixed-version data
CVE-2019-3396

Atlassian Confluence Server and Data Server

Affected
unspecified, 6.7.0, next of 6.13.0, next of 6.14.0, < 6.6.12, >= 6.7.0 < 6.12.3, >= 6.13.0 < 6.13.3, >= 6.14.0 < 6.14.2
Fixed
6.6.12, 6.12.3, 6.13.3, 6.14.2
Known exploitedMediumFixed-version data
CVE-2019-9978

WordPress Social Warfare Plugin

Affected
< 3.5.3
Fixed
3.5.3
Known exploitedCriticalFixed-version data
CVE-2019-7238

Sonatype Nexus Repository Manager

Affected
>= 3.0.0 < 3.15.0
Fixed
3.15.0