2019 CVE Vulnerabilities
17,620 CVEs published in 2019.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2019-0019 | HIGH | 7.5 | 1.1% | Apr 10, 2019 | When BGP tracing is enabled an incoming BGP message may cause the Junos OS routing protocol daemon (rpd) process to cras... |
| CVE-2019-5424 | HIGH | 8.8 | 1.9% | Apr 10, 2019 | In Ubiquiti Networks EdgeSwitch X v1.1.0 and prior, a privileged user can execute arbitrary shell commands over the SSH ... |
| CVE-2019-3842 | HIGH | 7 | 1.2% | Apr 9, 2019 | In systemd before v242-rc4, it was discovered that pam_systemd does not properly sanitize the environment before using t... |
| CVE-2019-0859 | HIGH | 7.8 | 4.2% | Apr 9, 2019 | An elevation of privilege vulnerability exists in Windows when the Win32k component fails to properly handle objects in ... |
| CVE-2019-0853 | HIGH | 8.8 | 27.6% | Apr 9, 2019 | A remote code execution vulnerability exists in the way that the Windows Graphics Device Interface (GDI) handles objects... |
| CVE-2019-0845 | HIGH | 8.8 | 14.9% | Apr 9, 2019 | A remote code execution vulnerability exists when the IOleCvt interface renders ASP webpage content, aka 'Windows IOleCv... |
| CVE-2019-0841 | HIGH | 7.8 | 41.7% | Apr 9, 2019 | An elevation of privilege vulnerability exists when Windows AppX Deployment Service (AppXSVC) improperly handles hard li... |
| CVE-2019-0810 | HIGH | 7.5 | 11.5% | Apr 9, 2019 | A remote code execution vulnerability exists in the way that the Chakra scripting engine handles objects in memory in Mi... |
| CVE-2019-0803 | HIGH | 7.8 | 45.2% | Apr 9, 2019 | An elevation of privilege vulnerability exists in Windows when the Win32k component fails to properly handle objects in ... |
| CVE-2019-0752 | HIGH | 7.5 | 81.6% | Apr 9, 2019 | A remote code execution vulnerability exists in the way that the scripting engine handles objects in memory in Internet ... |
| CVE-2019-8990 | HIGH | 8.1 | 2.9% | Apr 9, 2019 | The HTTP Connector component of TIBCO Software Inc.'s TIBCO ActiveMatrix BusinessWorks contains a vulnerability that the... |
| CVE-2019-10903 | HIGH | 7.5 | 5.6% | Apr 9, 2019 | In Wireshark 2.4.0 to 2.4.13, 2.6.0 to 2.6.7, and 3.0.0, the DCERPC SPOOLSS dissector could crash. This was addressed in... |
| CVE-2019-10901 | HIGH | 7.5 | 5.6% | Apr 9, 2019 | In Wireshark 2.4.0 to 2.4.13, 2.6.0 to 2.6.7, and 3.0.0, the LDSS dissector could crash. This was addressed in epan/diss... |
| CVE-2019-10899 | HIGH | 7.5 | 5.6% | Apr 9, 2019 | In Wireshark 2.4.0 to 2.4.13, 2.6.0 to 2.6.7, and 3.0.0, the SRVLOC dissector could crash. This was addressed in epan/di... |
| CVE-2019-10896 | HIGH | 7.5 | 5.7% | Apr 9, 2019 | In Wireshark 2.4.0 to 2.4.13, 2.6.0 to 2.6.7, and 3.0.0, the DOF dissector could crash. This was addressed in epan/disse... |
| CVE-2019-10895 | HIGH | 7.5 | 5.8% | Apr 9, 2019 | In Wireshark 2.4.0 to 2.4.13, 2.6.0 to 2.6.7, and 3.0.0, the NetScaler file parser could crash. This was addressed in wi... |
| CVE-2019-10894 | HIGH | 7.5 | 5.6% | Apr 9, 2019 | In Wireshark 2.4.0 to 2.4.13, 2.6.0 to 2.6.7, and 3.0.0, the GSS-API dissector could crash. This was addressed in epan/d... |
| CVE-2019-0808 | HIGH | 7.8 | 53.3% | Apr 9, 2019 | An elevation of privilege vulnerability exists in Windows when the Win32k component fails to properly handle objects in ... |
| CVE-2019-0797 | HIGH | 7.8 | 1.9% | Apr 9, 2019 | An elevation of privilege vulnerability exists in Windows when the Win32k component fails to properly handle objects in ... |
| CVE-2019-0211 | HIGH | 7.8 | 65.0% | Apr 8, 2019 | In Apache HTTP Server 2.4 releases 2.4.17 to 2.4.38, with MPM event, worker or prefork, code executing in less-privilege... |
| CVE-2019-0217 | HIGH | 7.5 | 16.6% | Apr 8, 2019 | In Apache HTTP Server 2.4 release 2.4.38 and prior, a race condition in mod_auth_digest when running in a threaded serve... |
| CVE-2019-1785 | HIGH | 7.8 | 1.8% | Apr 8, 2019 | A vulnerability in the RAR file scanning functionality of Clam AntiVirus (ClamAV) Software versions 0.101.1 and 0.101.0 ... |
| CVE-2019-11008 | HIGH | 8.8 | 3.8% | Apr 8, 2019 | In GraphicsMagick 1.4 snapshot-20190322 Q8, there is a heap-based buffer overflow in the function WriteXWDImage of coder... |
| CVE-2019-11007 | HIGH | 8.1 | 2.0% | Apr 8, 2019 | In GraphicsMagick 1.4 snapshot-20190322 Q8, there is a heap-based buffer over-read in the ReadMNGImage function of coder... |
| CVE-2019-11001 | HIGH | 7.2 | 38.4% | Apr 8, 2019 | On Reolink RLC-410W, C1 Pro, C2 Pro, RLC-422W, and RLC-511W devices through 1.0.227, an authenticated admin can use the ... |
Check if your code is affected by 2019 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now