2019 CVE Vulnerabilities
17,620 CVEs published in 2019.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2019-11377 | — | — | 1.8% | Apr 20, 2019 | wcms/wex/finder/action.php in WCMS v0.3.2 has a Arbitrary File Upload Vulnerability via developer/finder because .php is... |
| CVE-2019-11376 | — | — | 2.2% | Apr 20, 2019 | SOY CMS v3.0.2 allows remote attackers to execute arbitrary PHP code via a <?php substring in the second text box. NOTE:... |
| CVE-2019-11375 | — | — | 2.6% | Apr 20, 2019 | Msvod v10 has a CSRF vulnerability to change user information via the admin/member/edit.html URI. |
| CVE-2019-11374 | — | — | 9.9% | Apr 20, 2019 | 74CMS v5.0.1 has a CSRF vulnerability to add a new admin user via the index.php?m=Admin&c=admin&a=add URI. |
| CVE-2019-11373 | — | — | 2.5% | Apr 20, 2019 | An out-of-bounds read in File__Analyze::Get_L8 in File__Analyze_Buffer.cpp in MediaInfoLib in MediaArea MediaInfo 18.12 ... |
| CVE-2019-11372 | — | — | 2.5% | Apr 20, 2019 | An out-of-bounds read in MediaInfoLib::File__Tags_Helper::Synched_Test in Tag/File__Tags.cpp in MediaInfoLib in MediaAre... |
| CVE-2019-11366 | — | — | 2.1% | Apr 20, 2019 | An issue was discovered in atftpd in atftp 0.7.1. It does not lock the thread_list_mutex mutex before assigning the curr... |
| CVE-2019-11365 | — | — | 4.3% | Apr 20, 2019 | An issue was discovered in atftpd in atftp 0.7.1. A remote attacker may send a crafted packet triggering a stack-based b... |
| CVE-2019-11362 | — | — | 1.6% | Apr 20, 2019 | app/controllers/frontend/PostController.php in ROCBOSS V2.2.1 has SQL injection via the Post:doReward score paramter, as... |
| CVE-2019-11359 | — | — | 1.1% | Apr 20, 2019 | Cross-site scripting (XSS) vulnerability in display.php in I, Librarian 4.10 allows remote attackers to inject arbitrary... |
| CVE-2019-11351 | — | — | 3.9% | Apr 19, 2019 | TeamSpeak 3 Client before 3.2.5 allows remote code execution in the Qt framework. |
| CVE-2019-11350 | — | — | 1.8% | Apr 19, 2019 | CloudBees Jenkins Operations Center 2.150.2.3, when an expired trial license exists, allows Cleartext Password Storage a... |
| CVE-2019-2041 | — | — | 0.2% | Apr 19, 2019 | In the configuration of NFC modules on certain devices, there is a possible failure to distinguish individual devices du... |
| CVE-2019-2040 | — | — | 0.2% | Apr 19, 2019 | In rw_i93_process_ext_sys_info of rw_i93.cc, there is a possible out-of-bound read due to a missing bounds check. This c... |
| CVE-2019-2039 | — | — | 0.2% | Apr 19, 2019 | In rw_i93_sm_detect_ndef of rw_i93.cc, there is a possible out-of-bound read due to a missing bounds check. This could l... |
| CVE-2019-2038 | — | — | 0.4% | Apr 19, 2019 | In rw_i93_process_sys_info of rw_i93.cc, there is a possible out-of-bound read due to a missing bounds check. This could... |
| CVE-2019-2037 | — | — | 0.8% | Apr 19, 2019 | In l2cu_send_peer_config_rej of l2c_utils.cc, there is a possible out-of-bound read due to an incorrect bounds check. Th... |
| CVE-2019-2035 | — | — | 0.4% | Apr 19, 2019 | In rw_i93_sm_update_ndef of rw_i93.cc, there is a possible out-of-bound write due to a missing bounds check. This could ... |
| CVE-2019-2034 | — | — | 0.5% | Apr 19, 2019 | In rw_i93_sm_read_ndef of rw_i93.cc, there is a possible out-of-bounds write due to an integer overflow. This could lead... |
| CVE-2019-2033 | — | — | 0.2% | Apr 19, 2019 | In create_hdr of dnssd_clientstub.c, there is a possible use after free. This could lead to local escalation of privileg... |
| CVE-2019-2032 | — | — | 0.2% | Apr 19, 2019 | In SetScanResponseData of ble_advertiser_hci_interface.cc, there is a possible out-of-bound write due to a missing bound... |
| CVE-2019-2031 | — | — | 0.2% | Apr 19, 2019 | In rw_t3t_act_handle_check_ndef_rsp of rw_t3t.cc, there is a possible out-of-bound write due to a missing bounds check. ... |
| CVE-2019-2030 | — | — | 0.9% | Apr 19, 2019 | In removeInterfaceAddress of NetworkController.cpp, there is a possible use after free. This could lead to remote code e... |
| CVE-2019-2029 | — | — | 0.7% | Apr 19, 2019 | In btm_proc_smp_cback of tm_ble.cc, there is a possible memory corruption due to a use after free. This could lead to re... |
| CVE-2019-2028 | — | — | 1.2% | Apr 19, 2019 | In numerous hand-crafted functions in libmpeg2, NEON registers are not preserved. This could lead to remote code executi... |
Check if your code is affected by 2019 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now