2019 CVE Vulnerabilities

17,619 CVEs published in 2019.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2019-10923HIGH7.5An attacker with network access to an affected product may cause a denial of service condition by breaking the real-time...
CVE-2019-17431HIGH8.8An issue was discovered in fastadmin 1.0.0.20190705_beta. There is a public/index.php/admin/auth/admin/add CSRF vulnerab...
CVE-2019-17419HIGH7.2An issue was discovered in MetInfo 7.0. There is SQL injection via the admin/?n=user&c=admin_user&a=doGetUserInfo id par...
CVE-2019-17418HIGH7.2An issue was discovered in MetInfo 7.0. There is SQL injection via the admin/?n=language&c=language_general&a=doSearchPa...
CVE-2019-5700HIGH7.8NVIDIA Shield TV Experience prior to v8.0.1, NVIDIA Tegra software contains a vulnerability in the bootloader, where it ...
CVE-2019-5699HIGH7.8NVIDIA Shield TV Experience prior to v8.0.1, NVIDIA Tegra bootloader contains a vulnerability where the software perform...
CVE-2019-17414HIGH7.5tinylcy Vino through 2017-12-15 allows remote attackers to cause a denial of service ("vn_get_string error: Resource tem...
CVE-2019-17366HIGH8.8Citrix Application Delivery Management (ADM) 12.1 before build 54.13 has Incorrect Access Control.
CVE-2019-17365HIGH7.8Nix through 2.3 allows local users to gain access to an arbitrary user's account because the parent directory of the use...
CVE-2019-5053HIGH7.8An exploitable use-after-free vulnerability exists in the Length parsing function of NitroPDF. A specially crafted PDF c...
CVE-2019-5050HIGH7.8A specifically crafted PDF file can lead to a heap corruption when opened in NitroPDF 12.12.1.522. With careful memory m...
CVE-2019-5048HIGH7.8A specifically crafted PDF file can lead to a heap corruption when opened in NitroPDF 12.12.1.522. With careful memory m...
CVE-2019-5047HIGH7.8An exploitable Use After Free vulnerability exists in the CharProcs parsing functionality of NitroPDF. A specially craft...
CVE-2019-5046HIGH7.8A specifically crafted jpeg2000 file embedded in a PDF file can lead to a heap corruption when opening a PDF document in...
CVE-2019-5045HIGH7.8A specifically crafted jpeg2000 file embedded in a PDF file can lead to a heap corruption when opening a PDF document in...
CVE-2019-15023HIGH7.5A security vulnerability exists in Zingbox Inspector versions 1.294 and earlier, that results in passwords for 3rd party...
CVE-2019-15022HIGH7.5A security vulnerability exists in Zingbox Inspector versions 1.294 and earlier, that allows for the Inspector to be sus...
CVE-2019-15018HIGH7.5A security vulnerability exists in the Zingbox Inspector versions 1.280 and earlier, where authentication is not require...
CVE-2019-15017HIGH8.4The SSH service is enabled on the Zingbox Inspector versions 1.294 and earlier, exposing SSH to the local network. When ...
CVE-2019-15016HIGH8.8An SQL injection vulnerability exists in the management interface of Zingbox Inspector versions 1.288 and earlier, that ...
CVE-2019-15015HIGH8.4In the Zingbox Inspector, versions 1.294 and earlier, hardcoded credentials for root and inspector user accounts are pre...
CVE-2019-15014HIGH8.8A command injection vulnerability exists in the Zingbox Inspector versions 1.286 and earlier, that allows for an authent...
CVE-2019-3765HIGH8.1Dell EMC Avamar Server versions 7.4.1, 7.5.0, 7.5.1, 18.2 and 19.1 and Dell EMC Integrated Data Protection Appliance (ID...
CVE-2019-16905HIGH7.8OpenSSH 7.7 through 7.9 and 8.x before 8.1, when compiled with an experimental key type, has a pre-authentication intege...
CVE-2019-15715HIGH7.2MantisBT before 1.3.20 and 2.22.1 allows Post Authentication Command Injection, leading to Remote Code Execution.

Check if your code is affected by 2019 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now