2019 CVE Vulnerabilities

17,619 CVEs published in 2019.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2019-10210HIGH7Postgresql Windows installer before versions 11.5, 10.10, 9.6.15, 9.5.19, 9.4.24 is vulnerable via superuser writing pas...
CVE-2019-10208HIGH8.8A flaw was discovered in postgresql versions 9.4.x before 9.4.24, 9.5.x before 9.5.19, 9.6.x before 9.6.15, 10.x before ...
CVE-2019-0210HIGH7.5In Apache Thrift 0.9.3 to 0.12.0, a server implemented in Go using TJSONProtocol or TSimpleJSONProtocol may panic when f...
CVE-2019-0205HIGH7.5In Apache Thrift all versions up to and including 0.12.0, a server or client may run into an endless loop when feed with...
CVE-2019-4546HIGH8.8After installing the IBM Maximo Health- Safety and Environment Manager 7.6.1, a user is granted additional privileges th...
CVE-2019-4339HIGH7.5IBM Security Guardium Big Data Intelligence (SonarG) 4.0 uses weaker than expected cryptographic algorithms that could a...
CVE-2019-4314HIGH7.5IBM Security Guardium Big Data Intelligence (SonarG) 4.0 stores sensitive information in cleartext within a resource tha...
CVE-2019-18188HIGH7.5Trend Micro Apex One could be exploited by an attacker utilizing a command injection vulnerability to extract files from...
CVE-2019-18187HIGH7.5Trend Micro OfficeScan versions 11.0 and XG (12.0) could be exploited by an attacker utilizing a directory traversal vul...
CVE-2019-3636HIGH7.8A File Masquerade vulnerability in McAfee Total Protection (MTP) version 16.0.R21 and earlier in Windows client allowed ...
CVE-2019-18195HIGH8.8An issue was discovered on TerraMaster FS-210 4.0.19 devices. Normal users can use 1.user.php for privilege elevation.
CVE-2019-14927HIGH7.5An issue was discovered on Mitsubishi Electric Europe B.V. ME-RTU devices through 2.02 and INEA ME-RTU devices through 3...
CVE-2019-16663HIGH8.8An issue was discovered in rConfig 3.9.2. An attacker can directly execute system commands by sending a GET request to s...
CVE-2019-5508HIGH7.5Clustered Data ONTAP versions 9.2 through 9.4 are susceptible to a vulnerability which allows an attacker to use l2ping ...
CVE-2019-17145HIGH8.8This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit PhantomPDF 9.6.0...
CVE-2019-17144HIGH8.8This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit PhantomPDF 9.6.0...
CVE-2019-17142HIGH8.8This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit PhantomPDF 9.6.0...
CVE-2019-17141HIGH8.8This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit PhantomPDF 9.6.0...
CVE-2019-17140HIGH8.8This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit PhantomPDF 9.6.0...
CVE-2019-17139HIGH8.8This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit PhantomPDF 9.5.0...
CVE-2019-5123HIGH8.8Specially crafted web requests can cause SQL injections in YouPHPTube 7.6. An attacker can send a web request with Param...
CVE-2019-5122HIGH8.8SQL injection vulnerabilities exists in the authenticated part of YouPHPTube 7.6. Specially crafted web requests can cau...
CVE-2019-5121HIGH8.8SQL injection vulnerabilities exists in the authenticated part of YouPHPTube 7.6. Specially crafted web requests can cau...
CVE-2019-5120HIGH8.8An exploitable SQL injection vulnerability exists in the authenticated part of YouPHPTube 7.6. Specially crafted web req...
CVE-2019-5119HIGH8.8An exploitable SQL injection vulnerability exist in the authenticated part of YouPHPTube 7.6. Specially crafted web requ...

Check if your code is affected by 2019 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now