2019 CVE Vulnerabilities
17,619 CVEs published in 2019.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2019-12744 | — | — | 11.7% | Jun 20, 2019 | SeedDMS before 5.1.11 allows Remote Command Execution (RCE) because of unvalidated file upload of PHP scripts, a differe... |
| CVE-2019-6964 | — | — | 1.8% | Jun 20, 2019 | A heap-based buffer over-read in Service_SetParamStringValue in cosa_x_cisco_com_ddns_dml.c of the RDK RDKB-20181217-1 C... |
| CVE-2019-6963 | — | — | 2.4% | Jun 20, 2019 | A heap-based buffer overflow in cosa_dhcpv4_dml.c in the RDK RDKB-20181217-1 CcspPandM module may allow attackers with l... |
| CVE-2019-6962 | — | — | 1.6% | Jun 20, 2019 | A shell injection issue in cosa_wifi_apis.c in the RDK RDKB-20181217-1 CcspWifiAgent module allows attackers with login ... |
| CVE-2019-6961 | — | — | 0.9% | Jun 20, 2019 | Incorrect access control in actionHandlerUtility.php in the RDK RDKB-20181217-1 WebUI module allows a logged in user to ... |
| CVE-2019-12903 | — | — | 0.9% | Jun 20, 2019 | Pydio Cells before 1.5.0, when supplied with a Name field in an unexpected Unicode format, fails to handle this and incl... |
| CVE-2019-12902 | — | — | 1.1% | Jun 20, 2019 | Pydio Cells before 1.5.0 does incomplete cleanup of a user's data upon deletion. This allows a new user, holding the sam... |
| CVE-2019-12901 | — | — | 1.7% | Jun 20, 2019 | Pydio Cells before 1.5.0 fails to neutralize '../' elements, allowing an attacker with minimum privilege to Upload files... |
| CVE-2019-12899 | — | — | 1.7% | Jun 19, 2019 | Delta Electronics DeviceNet Builder 2.04 has a User Mode Write AV starting at ntdll!RtlQueueWorkItem+0x00000000000005e3. |
| CVE-2019-12898 | — | — | 1.7% | Jun 19, 2019 | Delta Electronics DeviceNet Builder 2.04 has a User Mode Write AV starting at image00400000+0x000000000017a45e. |
| CVE-2019-12897 | — | — | 1.5% | Jun 19, 2019 | Edraw Max 7.9.3 has a Read Access Violation at the Instruction Pointer after a call from ObjectModule!Paint::Clear+0x000... |
| CVE-2019-12896 | — | — | 1.5% | Jun 19, 2019 | Edraw Max 7.9.3 has Heap Corruption starting at ntdll!RtlpNtMakeTemporaryKey+0x0000000000001a77. |
| CVE-2019-12895 | — | — | 1.5% | Jun 19, 2019 | In Alternate Pic View 2.600, the Exception Handler Chain is Corrupted starting at PicViewer!PerfgrapFinalize+0x000000000... |
| CVE-2019-12894 | — | — | 1.5% | Jun 19, 2019 | Alternate Pic View 2.600 has a Read Access Violation at the Instruction Pointer after a call from PicViewer!PerfgrapFina... |
| CVE-2019-12893 | — | — | 1.5% | Jun 19, 2019 | Alternate Pic View 2.600 has a User Mode Write AV starting at PicViewer!PerfgrapFinalize+0x00000000000a8868. |
| CVE-2019-2025 | — | — | 0.5% | Jun 19, 2019 | In binder_thread_read of binder.c, there is a possible use-after-free due to improper locking. This could lead to local ... |
| CVE-2019-2024 | — | — | 0.2% | Jun 19, 2019 | In em28xx_unregister_dvb of em28xx-dvb.c, there is a possible use after free issue. This could lead to local escalation ... |
| CVE-2019-2023 | — | — | 0.5% | Jun 19, 2019 | In ServiceManager::add function in the hardware service manager, there is an insecure permissions check based on the PID... |
| CVE-2019-2022 | — | — | 0.8% | Jun 19, 2019 | In rw_t3t_act_handle_fmt_rsp and rw_t3t_act_handle_sro_rsp of rw_t3t.cc, there is a possible out-of-bound read due to a ... |
| CVE-2019-2021 | — | — | 0.8% | Jun 19, 2019 | In rw_t3t_act_handle_ndef_detect_rsp of rw_t3t.cc, there is a possible out-of-bound read due to a missing bounds check. ... |
| CVE-2019-2020 | — | — | 0.8% | Jun 19, 2019 | In llcp_dlc_proc_rr_rnr_pdu of llcp_dlc.cc, there is a possible out-of-bound read due to a missing bounds check. This co... |
| CVE-2019-2019 | — | — | 0.9% | Jun 19, 2019 | In ce_t4t_data_cback of ce_t4t.cc, there is a possible out-of-bound read due to a missing bounds check. This could lead ... |
| CVE-2019-2018 | — | — | 1.2% | Jun 19, 2019 | In resetPasswordInternal of DevicePolicyManagerService.java, there is a possible bypass of password reset protection due... |
| CVE-2019-2017 | — | — | 0.2% | Jun 19, 2019 | In rw_t2t_handle_tlv_detect_rsp of rw_t2t_ndef.cc, there is a possible out-of-bound write due to a missing bounds check.... |
| CVE-2019-2003 | — | — | 1.4% | Jun 19, 2019 | In addLinks of Linkify.java, there is a possible phishing vector due to an unusual root cause. This could lead to remote... |
Check if your code is affected by 2019 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now