2019 CVE Vulnerabilities

17,619 CVEs published in 2019.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2019-25041HIGH7.5Unbound before 1.9.5 allows an assertion failure via a compressed name in dname_pkt_copy. NOTE: The vendor disputes that...
CVE-2019-25040HIGH7.5Unbound before 1.9.5 allows an infinite loop via a compressed name in dname_pkt_copy. NOTE: The vendor disputes that thi...
CVE-2019-25037HIGH7.5Unbound before 1.9.5 allows an assertion failure and denial of service in dname_pkt_copy via an invalid packet. NOTE: Th...
CVE-2019-25036HIGH7.5Unbound before 1.9.5 allows an assertion failure and denial of service in synth_cname. NOTE: The vendor disputes that th...
CVE-2019-15059HIGH7.5In Liberty lisPBX 2.0-4, configuration backup files can be retrieved remotely from /backup/lispbx-CONF-YYYY-MM-DD.tar or...
CVE-2019-20466HIGH7.8An issue was discovered on Sannce Smart HD Wifi Security Camera EAN 2 950004 595317 devices. A local attacker with the "...
CVE-2019-20465HIGH7.5An issue was discovered on Sannce Smart HD Wifi Security Camera EAN 2 950004 595317 devices. It is possible (using TELNE...
CVE-2019-20464HIGH7.5An issue was discovered on Sannce Smart HD Wifi Security Camera EAN 2 950004 595317 devices. By default, a mobile applic...
CVE-2019-20463HIGH7.5An issue was discovered on Sannce Smart HD Wifi Security Camera EAN 2 950004 595317 devices. A crash and reboot can be t...
CVE-2019-19354HIGH7.8An insecure modification vulnerability in the /etc/passwd file was found in the operator-framework/hadoop as shipped in ...
CVE-2019-19353HIGH7An insecure modification vulnerability in the /etc/passwd file was found in the operator-framework/hive as shipped in Re...
CVE-2019-19352HIGH7An insecure modification vulnerability in the /etc/passwd file was found in the operator-framework/presto as shipped in ...
CVE-2019-19350HIGH7.8An insecure modification vulnerability in the /etc/passwd file was found in the openshift/ansible-service-broker as ship...
CVE-2019-19349HIGH7.8An insecure modification vulnerability in the /etc/passwd file was found in the container operator-framework/operator-me...
CVE-2019-19343HIGH7.5A flaw was found in Undertow when using Remoting as shipped in Red Hat Jboss EAP before version 7.2.4. A memory leak in ...
CVE-2019-10200HIGH7.2A flaw was discovered in OpenShift Container Platform 4 where, by default, users with access to create pods also have th...
CVE-2019-10128HIGH7.8A vulnerability was found in postgresql versions 11.x prior to 11.3. The Windows installer for EnterpriseDB-supplied Pos...
CVE-2019-10127HIGH8.8A vulnerability was found in postgresql versions 11.x prior to 11.3. The Windows installer for BigSQL-supplied PostgreSQ...
CVE-2019-14852HIGH7.5A flaw was found in 3scale’s APIcast gateway that enabled the TLS 1.0 protocol. An attacker could target traffic using t...
CVE-2019-18231HIGH7.5Advantech Spectre RT ERT351 Versions 5.1.3 and prior logins and passwords are transmitted in clear text form, which may ...
CVE-2019-18630HIGH7.5On Xerox AltaLink B8045/B8055/B8065/B8075/B8090 and C8030/C8035/C8045/C8055/C8070 multifunction printers with software r...
CVE-2019-18629HIGH8.1Xerox AltaLink B8045/B8055/B8065/B8075/B8090 and C8030/C8035/C8045/C8055/C8070 multifunction printers with software rele...
CVE-2019-25021HIGH7.5An issue was discovered in Scytl sVote 2.1. Due to the implementation of the database manager, an attacker can access th...
CVE-2019-25020HIGH7.5An issue was discovered in Scytl sVote 2.1. Because the sdm-ws-rest API does not require authentication, an attacker can...
CVE-2019-18945HIGH8Micro Focus Solutions Business Manager Application Repository versions prior to 11.7.1 are vulnerable to privilege escal...

Check if your code is affected by 2019 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now