2019 CVE Vulnerabilities

17,624 CVEs published in 2019.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2019-2194HIGH7.8In SurfaceFlinger::createLayer of SurfaceFlinger.cpp, there is a possible arbitrary code execution due to improper casti...
CVE-2019-19115HIGH7.8An escalation of privilege vulnerability in Nahimic APO Software Component Driver 1.4.2, 1.5.0, 1.5.1, 1.6.1 and 1.6.2 a...
CVE-2019-4545HIGH7.5IBM QRadar SIEM 7.3 and 7.4 when configured to use Active Directory Authentication may be susceptible to spoofing attack...
CVE-2019-16160HIGH7.5An integer underflow in the SMB server of MikroTik RouterOS before 6.45.5 allows remote unauthenticated attackers to cra...
CVE-2019-4326HIGH7.5"HCL AppScan Enterprise security rules update administration section of the web application console is missing HTTP Stri...
CVE-2019-19200HIGH8.8REDDOXX MailDepot 2032 2.2.1242 allows authenticated users to access the mailboxes of other users.
CVE-2019-14557HIGH8Buffer overflow in BIOS firmware for 8th, 9th, 10th Generation Intel(R) Core(TM), Intel(R) Celeron(R) Processor 4000 & 5...
CVE-2019-19199HIGH7.4REDDOXX MailDepot 2032 SP2 2.2.1242 has Insufficient Session Expiration because tokens are not invalidated upon a logout...
CVE-2019-20902HIGH7.5Upgrading Crowd via XML Data Transfer can reactivate a disabled user from OpenLDAP. The affected versions are from befor...
CVE-2019-20922HIGH7.5Handlebars before 4.4.5 allows Regular Expression Denial of Service (ReDoS) because of eager matching. The parser may be...
CVE-2019-20920HIGH8.1Handlebars before 3.0.8 and 4.x before 4.5.3 is vulnerable to Arbitrary Code Execution. The lookup helper fails to prope...
CVE-2019-16212HIGH8.8A vulnerability in Brocade SANnav versions before v2.1.0 could allow a remote authenticated attacker to conduct an LDAP ...
CVE-2019-7178HIGH7.2Pexip Infinity before 20.1 allows privilege escalation by restoring a system backup.
CVE-2019-7177HIGH7.2Pexip Infinity before 20.1 allows Code Injection onto nodes via an admin.
CVE-2019-1947HIGH8.6A vulnerability in the email message filtering feature of Cisco AsyncOS Software for Cisco Email Security Appliance (ESA...
CVE-2019-1888HIGH7.2A vulnerability in the Administration Web Interface of Cisco Unified Contact Center Express (Unified CCX) could allow an...
CVE-2019-16023HIGH7.5Multiple vulnerabilities in the implementation of Border Gateway Protocol (BGP) Ethernet VPN (EVPN) functionality in Cis...
CVE-2019-16021HIGH7.5Multiple vulnerabilities in the implementation of Border Gateway Protocol (BGP) Ethernet VPN (EVPN) functionality in Cis...
CVE-2019-16019HIGH8.6Multiple vulnerabilities in the implementation of Border Gateway Protocol (BGP) Ethernet VPN (EVPN) functionality in Cis...
CVE-2019-16009HIGH8.8A vulnerability in the web UI of Cisco IOS and Cisco IOS XE Software could allow an unauthenticated, remote attacker to ...
CVE-2019-16007HIGH7.1A vulnerability in the inter-service communication of Cisco AnyConnect Secure Mobility Client for Android could allow an...
CVE-2019-15992HIGH7.2A vulnerability in the implementation of the Lua interpreter integrated in Cisco Adaptive Security Appliance (ASA) Softw...
CVE-2019-15957HIGH7.2A vulnerability in the web-based management interface of certain Cisco Small Business RV Series Routers could allow an a...
CVE-2019-15289HIGH7.5Multiple vulnerabilities in the video service of Cisco TelePresence Collaboration Endpoint (CE) and Cisco RoomOS Softwar...
CVE-2019-15287HIGH7.8Multiple vulnerabilities in Cisco Webex Network Recording Player for Microsoft Windows and Cisco Webex Player for Micros...

Check if your code is affected by 2019 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now