2019 CVE Vulnerabilities

17,620 CVEs published in 2019.

CVE IDSeverityCVSSDescription
CVE-2019-10569HIGH7.8Stack buffer overflow due to instance id is misplaced inside definition of hardware accelerated effects in makefile in S...
CVE-2019-10554CRITICAL9.1Multiple Read overflows issue due to improper length check while decoding Identity Request in CSdomain/Authentication Re...
CVE-2019-10553CRITICAL9.1Multiple Read overflows due to improper length checks while decoding authentication in Cs domain/RAU Reject and TC cmd i...
CVE-2019-10552CRITICAL9.1Multiple Buffer Over-read issue can happen due to improper length checks while decoding Service Reject/RAU Reject/PTMSI ...
CVE-2019-10550CRITICAL9.1Buffer Over-read when UE is trying to process the message received form the network without zero termination in Snapdrag...
CVE-2019-10549HIGH7.5Null pointer dereference issue can happen due to improper validation of CSEQ header response received from network in Sn...
CVE-2019-10546CRITICAL9.8Buffer overflow can occur in WLAN firmware while parsing beacon/probe_response frames during roaming in Snapdragon Auto,...
CVE-2019-10526CRITICAL9.8Out of bound write in WLAN driver due to NULL character not properly placed after SSID name in Snapdragon Auto, Snapdrag...
CVE-2019-17644HIGH7.5An issue was discovered in Centreon before 2.8-30, 18.10-8, 19.04-5, and 19.10-2.. It provides sensitive information via...
CVE-2019-17643HIGH7.5An issue was discovered in Centreon before 2.8-30,18.10-8, 19.04-5, and 19.10-2. It provides sensitive information via a...
CVE-2019-19226HIGH7.5A Broken Access Control vulnerability in the D-Link DSL-2680 web administration interface (Firmware EU_1.03) allows an a...
CVE-2019-19225HIGH7.5A Broken Access Control vulnerability in the D-Link DSL-2680 web administration interface (Firmware EU_1.03) allows an a...
CVE-2019-19224HIGH7.5A Broken Access Control vulnerability in the D-Link DSL-2680 web administration interface (Firmware EU_1.03) allows an a...
CVE-2019-19223HIGH7.5A Broken Access Control vulnerability in the D-Link DSL-2680 web administration interface (Firmware EU_1.03) allows an a...
CVE-2019-19222MEDIUM5.4A Stored XSS issue in the D-Link DSL-2680 web administration interface (Firmware EU_1.03) allows an authenticated attack...
CVE-2019-8401Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. No...
CVE-2019-3404HIGH7.5By adding some special fields to the uri ofrouter app function, the user could abuse background app cgi functions withou...
CVE-2019-19792MEDIUM6.7A permissions issue in ESET Cyber Security before 6.8.300.0 for macOS allows a local attacker to escalate privileges by ...
CVE-2019-17549MEDIUM6.5ESET Cyber Security before 6.8.1.0 is vulnerable to a denial-of-service allowing any user to stop (kill) ESET processes....
CVE-2019-12916Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. No...
CVE-2019-12915Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. No...
CVE-2019-3696HIGH7.3A Improper Limitation of a Pathname to a Restricted Directory vulnerability in the packaging of pcp of SUSE Linux Enterp...
CVE-2019-3695HIGH7.8A Improper Control of Generation of Code vulnerability in the packaging of pcp of SUSE Linux Enterprise High Performance...
CVE-2019-14893CRITICAL9.8A flaw was discovered in FasterXML jackson-databind in all versions before 2.9.10 and 2.10.0, where it would permit poly...
CVE-2019-19608CRITICAL9.8A SQL injection vulnerability in in the web conferencing component of Mitel MiCollab AWV before 8.1.2.2 could allow an u...

Check if your code is affected by 2019 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now