2019 CVE Vulnerabilities
17,619 CVEs published in 2019.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2019-19840 | CRITICAL | 9.8 | 4.1% | Jan 22, 2020 | A stack-based buffer overflow in zap_parse_args in zap.c in zap in Ruckus Unleashed through 200.7.10.102.64 allows remot... |
| CVE-2019-19843 | CRITICAL | 9.8 | 1.8% | Jan 22, 2020 | Incorrect access control in the web interface in Ruckus Wireless Unleashed through 200.7.10.102.64 allows remote credent... |
| CVE-2019-19836 | CRITICAL | 9.8 | 3.6% | Jan 22, 2020 | AjaxRestrictedCmdStat in zap in Ruckus Wireless Unleashed through 200.7.10.102.64 allows remote code execution via a POS... |
| CVE-2019-10781 | CRITICAL | 9.8 | 1.4% | Jan 22, 2020 | In schema-inspector before 1.6.9, a maliciously crafted JavaScript object can bypass the `sanitize()` and the `validate(... |
| CVE-2019-10780 | CRITICAL | 9.8 | 2.8% | Jan 22, 2020 | BibTeX-ruby before 5.1.0 allows shell command injection due to unsanitized user input being passed directly to the built... |
| CVE-2019-19392 | CRITICAL | 9.8 | 1.4% | Jan 21, 2020 | The forDNN.UsersExportImport module before 1.2.0 for DNN (formerly DotNetNuke) allows an unprivileged user to import (cr... |
| CVE-2019-14017 | CRITICAL | 9.8 | 0.9% | Jan 21, 2020 | Heap buffer overflow can occur while parsing invalid MKV clip which is not standard and have invalid vorbis codec data i... |
| CVE-2019-14016 | CRITICAL | 9.8 | 0.9% | Jan 21, 2020 | Integer overflow occurs while playing the clip which is nonstandard in Snapdragon Auto, Snapdragon Compute, Snapdragon C... |
| CVE-2019-14014 | CRITICAL | 9.8 | 0.9% | Jan 21, 2020 | Possible buffer overflow when byte array receives incorrect input from reading source as array is not null terminated in... |
| CVE-2019-14013 | CRITICAL | 9.8 | 0.9% | Jan 21, 2020 | While parsing invalid super index table, elements within super index table may exceed total chunk size and invalid data ... |
| CVE-2019-14006 | CRITICAL | 9.8 | 1.0% | Jan 21, 2020 | Buffer overflow occur while playing the clip which is nonstandard due to lack of offset length check in Snapdragon Auto,... |
| CVE-2019-14005 | CRITICAL | 9.8 | 1.0% | Jan 21, 2020 | Buffer overflow occur while playing the clip which is nonstandard due to lack of check of size duration in Snapdragon Au... |
| CVE-2019-14004 | CRITICAL | 9.8 | 0.9% | Jan 21, 2020 | Buffer overflow occurs while processing invalid MKV clip, which has invalid EBML size in Snapdragon Auto, Snapdragon Com... |
| CVE-2019-10611 | CRITICAL | 9.8 | 0.9% | Jan 21, 2020 | Buffer overflow can occur while processing clip due to lack of check of object size before parsing in Snapdragon Auto, S... |
| CVE-2019-10581 | CRITICAL | 9.8 | 1.1% | Jan 21, 2020 | NULL is assigned to local instance of audio device pointer after free instead of global static pointer and can lead to u... |
| CVE-2019-10579 | CRITICAL | 9.1 | 0.9% | Jan 21, 2020 | Buffer over-read can occur while playing the video clip which is not standard in Snapdragon Auto, Snapdragon Compute, Sn... |
| CVE-2019-10532 | CRITICAL | 9.8 | 1.1% | Jan 21, 2020 | Null-pointer dereference issue can occur while calculating string length when source string length is zero in Snapdragon... |
| CVE-2019-17634 | CRITICAL | 9 | 1.9% | Jan 17, 2020 | Eclipse Memory Analyzer version 1.9.1 and earlier is subject to a cross site scripting (XSS) vulnerability when generati... |
| CVE-2019-15855 | CRITICAL | 9.1 | 1.5% | Jan 17, 2020 | An issue was discovered in Maarch RM before 2.5. A path traversal vulnerability allows an unauthenticated remote attacke... |
| CVE-2019-17361 | CRITICAL | 9.8 | 15.1% | Jan 17, 2020 | In SaltStack Salt through 2019.2.0, the salt-api NET API with the ssh client enabled is vulnerable to command injection.... |
| CVE-2019-10940 | CRITICAL | 9.9 | 1.2% | Jan 16, 2020 | A vulnerability has been identified in SINEMA Server (All versions < V14.0 SP2 Update 1). Incorrect session validation c... |
| CVE-2019-9493 | CRITICAL | 9.8 | 3.6% | Jan 15, 2020 | The MyCar Controls of AutoMobility Distribution Inc., mobile application contains hard-coded admin credentials. A remote... |
| CVE-2019-0219 | CRITICAL | 9.8 | 7.8% | Jan 14, 2020 | A website running in the InAppBrowser webview on Android could execute arbitrary JavaScript in the main application's we... |
| CVE-2019-20374 | CRITICAL | 9.6 | 2.3% | Jan 9, 2020 | A mutation cross-site scripting (XSS) issue in Typora through 0.9.9.31.2 on macOS and through 0.9.81 on Linux leads to R... |
| CVE-2019-6330 | CRITICAL | 9.8 | 2.4% | Jan 9, 2020 | A potential security vulnerability has been identified in the software solution HP Access Control versions prior to 16.7... |
Check if your code is affected by 2019 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now