2019 CVE Vulnerabilities

17,620 CVEs published in 2019.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2019-11377wcms/wex/finder/action.php in WCMS v0.3.2 has a Arbitrary File Upload Vulnerability via developer/finder because .php is...
CVE-2019-11376SOY CMS v3.0.2 allows remote attackers to execute arbitrary PHP code via a <?php substring in the second text box. NOTE:...
CVE-2019-11375Msvod v10 has a CSRF vulnerability to change user information via the admin/member/edit.html URI.
CVE-2019-1137474CMS v5.0.1 has a CSRF vulnerability to add a new admin user via the index.php?m=Admin&c=admin&a=add URI.
CVE-2019-11373An out-of-bounds read in File__Analyze::Get_L8 in File__Analyze_Buffer.cpp in MediaInfoLib in MediaArea MediaInfo 18.12 ...
CVE-2019-11372An out-of-bounds read in MediaInfoLib::File__Tags_Helper::Synched_Test in Tag/File__Tags.cpp in MediaInfoLib in MediaAre...
CVE-2019-11366An issue was discovered in atftpd in atftp 0.7.1. It does not lock the thread_list_mutex mutex before assigning the curr...
CVE-2019-11365An issue was discovered in atftpd in atftp 0.7.1. A remote attacker may send a crafted packet triggering a stack-based b...
CVE-2019-11362app/controllers/frontend/PostController.php in ROCBOSS V2.2.1 has SQL injection via the Post:doReward score paramter, as...
CVE-2019-11359Cross-site scripting (XSS) vulnerability in display.php in I, Librarian 4.10 allows remote attackers to inject arbitrary...
CVE-2019-11351TeamSpeak 3 Client before 3.2.5 allows remote code execution in the Qt framework.
CVE-2019-11350CloudBees Jenkins Operations Center 2.150.2.3, when an expired trial license exists, allows Cleartext Password Storage a...
CVE-2019-2041In the configuration of NFC modules on certain devices, there is a possible failure to distinguish individual devices du...
CVE-2019-2040In rw_i93_process_ext_sys_info of rw_i93.cc, there is a possible out-of-bound read due to a missing bounds check. This c...
CVE-2019-2039In rw_i93_sm_detect_ndef of rw_i93.cc, there is a possible out-of-bound read due to a missing bounds check. This could l...
CVE-2019-2038In rw_i93_process_sys_info of rw_i93.cc, there is a possible out-of-bound read due to a missing bounds check. This could...
CVE-2019-2037In l2cu_send_peer_config_rej of l2c_utils.cc, there is a possible out-of-bound read due to an incorrect bounds check. Th...
CVE-2019-2035In rw_i93_sm_update_ndef of rw_i93.cc, there is a possible out-of-bound write due to a missing bounds check. This could ...
CVE-2019-2034In rw_i93_sm_read_ndef of rw_i93.cc, there is a possible out-of-bounds write due to an integer overflow. This could lead...
CVE-2019-2033In create_hdr of dnssd_clientstub.c, there is a possible use after free. This could lead to local escalation of privileg...
CVE-2019-2032In SetScanResponseData of ble_advertiser_hci_interface.cc, there is a possible out-of-bound write due to a missing bound...
CVE-2019-2031In rw_t3t_act_handle_check_ndef_rsp of rw_t3t.cc, there is a possible out-of-bound write due to a missing bounds check. ...
CVE-2019-2030In removeInterfaceAddress of NetworkController.cpp, there is a possible use after free. This could lead to remote code e...
CVE-2019-2029In btm_proc_smp_cback of tm_ble.cc, there is a possible memory corruption due to a use after free. This could lead to re...
CVE-2019-2028In numerous hand-crafted functions in libmpeg2, NEON registers are not preserved. This could lead to remote code executi...

Check if your code is affected by 2019 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now