2019 CVE Vulnerabilities
17,620 CVEs published in 2019.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2019-8943 | MEDIUM | 6.5 | 92.0% | Feb 20, 2019 | WordPress through 5.0.3 allows Path Traversal in wp_crop_image(). An attacker (who has privileges to crop an image) can ... |
| CVE-2019-3812 | MEDIUM | 4.4 | 0.4% | Feb 19, 2019 | QEMU, through version 2.10 and through version 3.1.0, is vulnerable to an out-of-bounds read of up to 128 bytes in the h... |
| CVE-2019-8906 | MEDIUM | 4.4 | 0.5% | Feb 18, 2019 | do_core_note in readelf.c in libmagic.a in file 5.35 has an out-of-bounds read because memcpy is misused. |
| CVE-2019-8905 | MEDIUM | 4.4 | 0.5% | Feb 18, 2019 | do_core_note in readelf.c in libmagic.a in file 5.35 has a stack-based buffer over-read, related to file_printable, a di... |
| CVE-2019-8394 | MEDIUM | 6.5 | 64.1% | Feb 17, 2019 | Zoho ManageEngine ServiceDesk Plus (SDP) before 10.0 build 10012 allows remote attackers to upload arbitrary files via l... |
| CVE-2019-8354 | MEDIUM | 5 | 1.6% | Feb 15, 2019 | An issue was discovered in SoX 14.4.2. lsx_make_lpf in effect_i_dsp.c has an integer overflow on the result of multiplic... |
| CVE-2019-3610 | MEDIUM | 5.6 | 0.3% | Feb 13, 2019 | Data Leakage Attacks vulnerability in Microsoft Windows client in McAfee True Key (TK) 3.1.9211.0 and earlier allows loc... |
| CVE-2019-7704 | MEDIUM | 6.5 | 1.2% | Feb 10, 2019 | wasm::WasmBinaryBuilder::readUserSection in wasm-binary.cpp in Binaryen 1.38.22 triggers an attempt at excessive memory ... |
| CVE-2019-7703 | MEDIUM | 6.5 | 1.5% | Feb 10, 2019 | In Binaryen 1.38.22, there is a use-after-free problem in wasm::WasmBinaryBuilder::visitCall in wasm-binary.cpp. Remote ... |
| CVE-2019-7702 | MEDIUM | 6.5 | 1.1% | Feb 10, 2019 | A NULL pointer dereference was discovered in wasm::SExpressionWasmBuilder::parseExpression in wasm-s-parser.cpp in Binar... |
| CVE-2019-7701 | MEDIUM | 6.5 | 1.2% | Feb 10, 2019 | A heap-based buffer over-read was discovered in wasm::SExpressionParser::skipWhitespace() in wasm-s-parser.cpp in Binary... |
| CVE-2019-7700 | MEDIUM | 6.5 | 1.2% | Feb 10, 2019 | A heap-based buffer over-read was discovered in wasm::WasmBinaryBuilder::visitCall in wasm-binary.cpp in Binaryen 1.38.2... |
| CVE-2019-7665 | MEDIUM | 5.5 | 1.4% | Feb 9, 2019 | In elfutils 0.175, a heap-based buffer over-read was discovered in the function elf32_xlatetom in elf32_xlatetom.c in li... |
| CVE-2019-7664 | MEDIUM | 5.5 | 1.0% | Feb 9, 2019 | In elfutils 0.175, a negative-sized memcpy is attempted in elf_cvt_note in libelf/note_xlate.h because of an incorrect o... |
| CVE-2019-7662 | MEDIUM | 6.5 | 1.6% | Feb 9, 2019 | An assertion failure was discovered in wasm::WasmBinaryBuilder::getType() in wasm-binary.cpp in Binaryen 1.38.22. This a... |
| CVE-2019-1676 | MEDIUM | 6.8 | 1.8% | Feb 8, 2019 | A vulnerability in the Session Initiation Protocol (SIP) call processing of Cisco Meeting Server (CMS) software could al... |
| CVE-2019-1672 | MEDIUM | 5.8 | 1.6% | Feb 8, 2019 | A vulnerability in the Decryption Policy Default Action functionality of the Cisco Web Security Appliance (WSA) could al... |
| CVE-2019-1673 | MEDIUM | 5.4 | 0.8% | Feb 8, 2019 | A vulnerability in the web-based management interface of Cisco Identity Services Engine (ISE) could allow an authenticat... |
| CVE-2019-1671 | MEDIUM | 6.1 | 1.2% | Feb 7, 2019 | A vulnerability in the web-based management interface of Cisco Firepower Management Center (FMC) could allow an unauthen... |
| CVE-2019-1670 | MEDIUM | 6.1 | 1.2% | Feb 7, 2019 | A vulnerability in the web-based management interface of Cisco Unified Intelligence Center Software could allow an unaut... |
| CVE-2019-1661 | MEDIUM | 6.1 | 1.2% | Feb 7, 2019 | A vulnerability in the web-based management interface of Cisco TelePresence Management Suite (TMS) software could allow ... |
| CVE-2019-1680 | MEDIUM | 4.3 | 1.4% | Feb 7, 2019 | A vulnerability in Cisco Webex Business Suite could allow an unauthenticated, remote attacker to inject arbitrary text i... |
| CVE-2019-1679 | MEDIUM | 5 | 2.1% | Feb 7, 2019 | A vulnerability in the web interface of Cisco TelePresence Conductor, Cisco Expressway Series, and Cisco TelePresence Vi... |
| CVE-2019-1660 | MEDIUM | 5.3 | 2.2% | Feb 7, 2019 | A vulnerability in the Simple Object Access Protocol (SOAP) of Cisco TelePresence Management Suite (TMS) software could ... |
| CVE-2019-1678 | MEDIUM | 4.3 | 1.4% | Feb 7, 2019 | A vulnerability in Cisco Meeting Server could allow an authenticated, remote attacker to cause a partial denial of servi... |
Check if your code is affected by 2019 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now