2019 CVE Vulnerabilities

17,620 CVEs published in 2019.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2019-0257HIGH8.8Customizing functionality of SAP NetWeaver AS ABAP Platform (fixed in versions from 7.0 to 7.02, from 7.10 to 7.11, 7.30...
CVE-2019-6974HIGH8.1In the Linux kernel before 4.20.8, kvm_ioctl_create_device in virt/kvm/kvm_main.c mishandles reference counting because ...
CVE-2019-3782HIGH7.8Cloud Foundry CredHub CLI, versions prior to 2.2.1, inadvertently writes authentication credentials provided via environ...
CVE-2019-8319HIGH8.8An issue was discovered on D-Link DIR-878 devices with firmware 1.12A1. This issue is a Command Injection allowing a rem...
CVE-2019-8318HIGH8.8An issue was discovered on D-Link DIR-878 devices with firmware 1.12A1. This issue is a Command Injection allowing a rem...
CVE-2019-8317HIGH8.8An issue was discovered on D-Link DIR-878 devices with firmware 1.12A1. This issue is a Command Injection allowing a rem...
CVE-2019-8316HIGH8.8An issue was discovered on D-Link DIR-878 devices with firmware 1.12A1. This issue is a Command Injection allowing a rem...
CVE-2019-8315HIGH8.8An issue was discovered on D-Link DIR-878 devices with firmware 1.12A1. This issue is a Command Injection allowing a rem...
CVE-2019-8314HIGH8.8An issue was discovered on D-Link DIR-878 devices with firmware 1.12A1. This issue is a Command Injection allowing a rem...
CVE-2019-8313HIGH8.8An issue was discovered on D-Link DIR-878 devices with firmware 1.12A1. This issue is a Command Injection allowing a rem...
CVE-2019-8312HIGH8.8An issue was discovered on D-Link DIR-878 devices with firmware 1.12A1. This issue is a Command Injection allowing a rem...
CVE-2019-6545HIGH7.5AVEVA Software, LLC InduSoft Web Studio prior to Version 8.1 SP3 and InTouch Edge HMI (formerly InTouch Machine Edition)...
CVE-2019-6541HIGH7.8A memory corruption vulnerability has been identified in WECON LeviStudioU version 1.8.56 and prior, which may allow arb...
CVE-2019-6539HIGH7.8Several heap-based buffer overflow vulnerabilities in WECON LeviStudioU version 1.8.56 and prior have been identified, w...
CVE-2019-6537HIGH7.8Multiple stack-based buffer overflow vulnerabilities in WECON LeviStudioU version 1.8.56 and prior may be exploited when...
CVE-2019-1688HIGH7.1A vulnerability in the management web interface of Cisco Network Assurance Engine (NAE) could allow an unauthenticated, ...
CVE-2019-6549HIGH7.2An attacker could retrieve plain-text credentials stored in a XML file on PR100088 Modbus gateway versions prior to Rele...
CVE-2019-5736HIGH8.6runc through 1.0-rc6, as used in Docker before 18.09.2 and other products, allows attackers to overwrite the host runc b...
CVE-2019-7638HIGH8.8SDL (Simple DirectMedia Layer) through 1.2.15 and 2.x through 2.0.9 has a heap-based buffer over-read in Map1toN in vide...
CVE-2019-7637HIGH8.8SDL (Simple DirectMedia Layer) through 1.2.15 and 2.x through 2.0.9 has a heap-based buffer overflow in SDL_FillRect in ...
CVE-2019-7636HIGH8.1SDL (Simple DirectMedia Layer) through 1.2.15 and 2.x through 2.0.9 has a heap-based buffer over-read in SDL_GetRGB in v...
CVE-2019-7635HIGH8.1SDL (Simple DirectMedia Layer) through 1.2.15 and 2.x through 2.0.9 has a heap-based buffer over-read in Blit1to4 in vid...
CVE-2019-1675HIGH7.5A vulnerability in the default configuration of the Cisco Aironet Active Sensor could allow an unauthenticated, remote a...
CVE-2019-3704HIGH7.8VNX Control Station in Dell EMC VNX2 OE for File versions prior to 8.1.9.236 contains OS command injection vulnerability...
CVE-2019-7578HIGH8.1SDL (Simple DirectMedia Layer) through 1.2.15 and 2.x through 2.0.9 has a heap-based buffer over-read in InitIMA_ADPCM i...

Check if your code is affected by 2019 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now