2019 CVE Vulnerabilities
17,619 CVEs published in 2019.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2019-10923 | HIGH | 7.5 | 1.4% | Oct 10, 2019 | An attacker with network access to an affected product may cause a denial of service condition by breaking the real-time... |
| CVE-2019-17431 | HIGH | 8.8 | 0.6% | Oct 10, 2019 | An issue was discovered in fastadmin 1.0.0.20190705_beta. There is a public/index.php/admin/auth/admin/add CSRF vulnerab... |
| CVE-2019-17419 | HIGH | 7.2 | 1.2% | Oct 10, 2019 | An issue was discovered in MetInfo 7.0. There is SQL injection via the admin/?n=user&c=admin_user&a=doGetUserInfo id par... |
| CVE-2019-17418 | HIGH | 7.2 | 49.3% | Oct 10, 2019 | An issue was discovered in MetInfo 7.0. There is SQL injection via the admin/?n=language&c=language_general&a=doSearchPa... |
| CVE-2019-5700 | HIGH | 7.8 | 0.7% | Oct 9, 2019 | NVIDIA Shield TV Experience prior to v8.0.1, NVIDIA Tegra software contains a vulnerability in the bootloader, where it ... |
| CVE-2019-5699 | HIGH | 7.8 | 0.5% | Oct 9, 2019 | NVIDIA Shield TV Experience prior to v8.0.1, NVIDIA Tegra bootloader contains a vulnerability where the software perform... |
| CVE-2019-17414 | HIGH | 7.5 | 1.8% | Oct 9, 2019 | tinylcy Vino through 2017-12-15 allows remote attackers to cause a denial of service ("vn_get_string error: Resource tem... |
| CVE-2019-17366 | HIGH | 8.8 | 1.3% | Oct 9, 2019 | Citrix Application Delivery Management (ADM) 12.1 before build 54.13 has Incorrect Access Control. |
| CVE-2019-17365 | HIGH | 7.8 | 0.4% | Oct 9, 2019 | Nix through 2.3 allows local users to gain access to an arbitrary user's account because the parent directory of the use... |
| CVE-2019-5053 | HIGH | 7.8 | 1.3% | Oct 9, 2019 | An exploitable use-after-free vulnerability exists in the Length parsing function of NitroPDF. A specially crafted PDF c... |
| CVE-2019-5050 | HIGH | 7.8 | 2.6% | Oct 9, 2019 | A specifically crafted PDF file can lead to a heap corruption when opened in NitroPDF 12.12.1.522. With careful memory m... |
| CVE-2019-5048 | HIGH | 7.8 | 2.3% | Oct 9, 2019 | A specifically crafted PDF file can lead to a heap corruption when opened in NitroPDF 12.12.1.522. With careful memory m... |
| CVE-2019-5047 | HIGH | 7.8 | 1.3% | Oct 9, 2019 | An exploitable Use After Free vulnerability exists in the CharProcs parsing functionality of NitroPDF. A specially craft... |
| CVE-2019-5046 | HIGH | 7.8 | 2.3% | Oct 9, 2019 | A specifically crafted jpeg2000 file embedded in a PDF file can lead to a heap corruption when opening a PDF document in... |
| CVE-2019-5045 | HIGH | 7.8 | 2.3% | Oct 9, 2019 | A specifically crafted jpeg2000 file embedded in a PDF file can lead to a heap corruption when opening a PDF document in... |
| CVE-2019-15023 | HIGH | 7.5 | 0.8% | Oct 9, 2019 | A security vulnerability exists in Zingbox Inspector versions 1.294 and earlier, that results in passwords for 3rd party... |
| CVE-2019-15022 | HIGH | 7.5 | 1.1% | Oct 9, 2019 | A security vulnerability exists in Zingbox Inspector versions 1.294 and earlier, that allows for the Inspector to be sus... |
| CVE-2019-15018 | HIGH | 7.5 | 1.2% | Oct 9, 2019 | A security vulnerability exists in the Zingbox Inspector versions 1.280 and earlier, where authentication is not require... |
| CVE-2019-15017 | HIGH | 8.4 | 0.4% | Oct 9, 2019 | The SSH service is enabled on the Zingbox Inspector versions 1.294 and earlier, exposing SSH to the local network. When ... |
| CVE-2019-15016 | HIGH | 8.8 | 1.2% | Oct 9, 2019 | An SQL injection vulnerability exists in the management interface of Zingbox Inspector versions 1.288 and earlier, that ... |
| CVE-2019-15015 | HIGH | 8.4 | 0.4% | Oct 9, 2019 | In the Zingbox Inspector, versions 1.294 and earlier, hardcoded credentials for root and inspector user accounts are pre... |
| CVE-2019-15014 | HIGH | 8.8 | 2.3% | Oct 9, 2019 | A command injection vulnerability exists in the Zingbox Inspector versions 1.286 and earlier, that allows for an authent... |
| CVE-2019-3765 | HIGH | 8.1 | 1.1% | Oct 9, 2019 | Dell EMC Avamar Server versions 7.4.1, 7.5.0, 7.5.1, 18.2 and 19.1 and Dell EMC Integrated Data Protection Appliance (ID... |
| CVE-2019-16905 | HIGH | 7.8 | 2.2% | Oct 9, 2019 | OpenSSH 7.7 through 7.9 and 8.x before 8.1, when compiled with an experimental key type, has a pre-authentication intege... |
| CVE-2019-15715 | HIGH | 7.2 | 30.0% | Oct 9, 2019 | MantisBT before 1.3.20 and 2.22.1 allows Post Authentication Command Injection, leading to Remote Code Execution. |
Check if your code is affected by 2019 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now