2019 CVE Vulnerabilities

17,620 CVEs published in 2019.

CVE IDSeverityCVSSDescription
CVE-2019-19344MEDIUM6.5There is a use-after-free issue in all samba 4.9.x versions before 4.9.18, all samba 4.10.x versions before 4.10.12 and ...
CVE-2019-18932HIGH7log.c in Squid Analysis Report Generator (sarg) through 2.3.11 allows local privilege escalation. By default, it uses a ...
CVE-2019-14907MEDIUM6.5All samba versions 4.9.x before 4.9.18, 4.10.x before 4.10.12 and 4.11.x before 4.11.5 have an issue where if it is set ...
CVE-2019-14902MEDIUM5.4There is an issue in all samba 4.11.x versions before 4.11.5, all samba 4.10.x versions before 4.10.12 and all samba 4.9...
CVE-2019-19392CRITICAL9.8The forDNN.UsersExportImport module before 1.2.0 for DNN (formerly DotNetNuke) allows an unprivileged user to import (cr...
CVE-2019-3864HIGH8.8A vulnerability was discovered in all quay-2 versions before quay-3.0.0, in the Quay web GUI where POST requests include...
CVE-2019-14768HIGH8.8An Arbitrary File Upload issue in the file browser of DIMO YellowBox CRM before 6.3.4 allows a standard authenticated us...
CVE-2019-14767HIGH7.5In DIMO YellowBox CRM before 6.3.4, Path Traversal in images/Apparence (dossier=../) and servletrecuperefichier (documen...
CVE-2019-14766MEDIUM6.5Path Traversal in the file browser of DIMO YellowBox CRM before 6.3.4 allows a standard authenticated user to browse the...
CVE-2019-14765HIGH8.8Incorrect Access Control in AfficheExplorateurParam() in DIMO YellowBox CRM before 6.3.4 allows a standard authenticated...
CVE-2019-2267HIGH7.8Locked regions may be modified through other interfaces in secure boot loader image due to improper access control. in S...
CVE-2019-14036HIGH7.8Possible buffer overflow issue in error processing due to improper validation of array index value in Snapdragon Auto, S...
CVE-2019-14034HIGH7.8Use after free while processing eeprom query as there is a chance to not unlock mutex after error occurs in Snapdragon A...
CVE-2019-14024HIGH7.8Possible stack-use-after-scope issue in NFC usecase for card emulation in Snapdragon Auto, Snapdragon Industrial IOT, Sn...
CVE-2019-14023HIGH7.8String format issue will occur while processing HLOS data as there is no user input validation to ensure inputs are prop...
CVE-2019-14017CRITICAL9.8Heap buffer overflow can occur while parsing invalid MKV clip which is not standard and have invalid vorbis codec data i...
CVE-2019-14016CRITICAL9.8Integer overflow occurs while playing the clip which is nonstandard in Snapdragon Auto, Snapdragon Compute, Snapdragon C...
CVE-2019-14014CRITICAL9.8Possible buffer overflow when byte array receives incorrect input from reading source as array is not null terminated in...
CVE-2019-14013CRITICAL9.8While parsing invalid super index table, elements within super index table may exceed total chunk size and invalid data ...
CVE-2019-14010HIGH7.5The device may enter into error state when some tool or application gets failure at 1st buffer map all and performs 2nd ...
CVE-2019-14008HIGH7.5Possible null pointer dereference issue in location assistance data processing due to missing null check on resources be...
CVE-2019-14006CRITICAL9.8Buffer overflow occur while playing the clip which is nonstandard due to lack of offset length check in Snapdragon Auto,...
CVE-2019-14005CRITICAL9.8Buffer overflow occur while playing the clip which is nonstandard due to lack of check of size duration in Snapdragon Au...
CVE-2019-14004CRITICAL9.8Buffer overflow occurs while processing invalid MKV clip, which has invalid EBML size in Snapdragon Auto, Snapdragon Com...
CVE-2019-14003HIGH7.5Null pointer exception can happen while parsing invalid MKV clip where cue information is parsed before segment informat...

Check if your code is affected by 2019 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now