2019 CVE Vulnerabilities

17,620 CVEs published in 2019.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2019-12777An issue was discovered on the ENTTEC Datagate MK2, Storm 24, Pixelator, and E-Streamer MK2 with firmware 70044_update_0...
CVE-2019-12776An issue was discovered on the ENTTEC Datagate MK2, Storm 24, Pixelator, and E-Streamer MK2 with firmware 70044_update_0...
CVE-2019-12775An issue was discovered on the ENTTEC Datagate MK2, Storm 24, Pixelator, and E-Streamer MK2 with firmware 70044_update_0...
CVE-2019-12774A number of stored XSS vulnerabilities have been identified in the web configuration feature in ENTTEC Datagate Mk2 7004...
CVE-2019-12477Supra Smart Cloud TV allows remote file inclusion in the openLiveURL function, which allows a local attacker to broadcas...
CVE-2019-12771Command injection is possible in ThinStation through 6.1.1 via shell metacharacters after the cgi-bin/CdControl.cgi acti...
CVE-2019-12763The Security Camera CZ application through 1.6.8 for Android stores potentially sensitive recorded video in external dat...
CVE-2019-12492Gallagher Command Centre before 7.80.939, 7.90.x before 7.90.961, and 8.x before 8.00.1128 allows arbitrary event creati...
CVE-2019-11523Anviz Global M3 Outdoor RFID Access Control executes any command received from any source. No authentication/encryption ...
CVE-2019-5525VMware Workstation (15.x before 15.1.0) contains a use-after-free vulnerability in the Advanced Linux Sound Architecture...
CVE-2019-5522VMware Tools for Windows update addresses an out of bounds read vulnerability in vm3dmp driver which is installed with v...
CVE-2019-12761A code injection issue was discovered in PyXDG before 0.26 via crafted Python code in a Category element of a Menu XML d...
CVE-2019-6989TP-Link TL-WR940N is vulnerable to a stack-based buffer overflow, caused by improper bounds checking by the ipAddrDispos...
CVE-2019-9929Northern.tech CFEngine Enterprise 3.12.1 has Insecure Permissions.
CVE-2019-7215Progress Sitefinity 10.1.6536 does not invalidate session cookies upon logouts. It instead tries to overwrite the cookie...
CVE-2019-12291HashiCorp Consul 1.4.0 through 1.5.0 has Incorrect Access Control. Keys not matching a specific ACL rule used for prefix...
CVE-2019-12135An unspecified vulnerability in the application server in PaperCut MF and NG versions 18.3.8 and earlier and versions 19...
CVE-2019-7554An issue was discovered in PHP Scripts Mall API Based Travel Booking 3.4.7. There is Reflected XSS via the flight-result...
CVE-2019-7311An issue was discovered on Linksys WRT1900ACS 1.0.3.187766 devices. A lack of encryption in how the user login cookie (a...
CVE-2019-7220X-Cart V5 is vulnerable to XSS via the CategoryFilter2 parameter.
CVE-2019-12303In Rancher 2 through 2.2.3, Project owners can inject additional fluentd configuration to read files or execute arbitrar...
CVE-2019-12274In Rancher 1 and 2 through 2.2.3, unprivileged users (if allowed to deploy nodes) can gain admin access to the Rancher m...
CVE-2019-8320A Directory Traversal issue was discovered in RubyGems 2.7.6 and later through 3.0.2. Before making new directories or t...
CVE-2019-5305The image processing module of some Huawei Mate 10 smartphones versions before ALP-L29 9.0.0.159(C185) has a memory doub...
CVE-2019-5295Huawei Honor V10 smartphones versions earlier than Berkeley-AL20 9.0.0.125(C00E125R2P14T8) have an authorization bypass ...

Check if your code is affected by 2019 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now