2019 CVE Vulnerabilities

17,620 CVEs published in 2019.

CVE IDSeverityCVSSDescription
CVE-2019-11992MEDIUM6.1A security vulnerability in HPE OneView for VMware vCenter 9.5 could be exploited remotely to allow Cross-Site Scripting...
CVE-2019-5152HIGH7.4An exploitable information disclosure vulnerability exists in the network packet handling functionality of Shadowsocks-l...
CVE-2019-11400CRITICAL9.8An issue was discovered on TRENDnet TEW-651BR 2.04B1, TEW-652BRP 3.04b01, and TEW-652BRU 1.00b12 devices. A buffer overf...
CVE-2019-11399CRITICAL9.8An issue was discovered on TRENDnet TEW-651BR 2.04B1, TEW-652BRP 3.04b01, and TEW-652BRU 1.00b12 devices. OS command inj...
CVE-2019-19235HIGH7AsLdrSrv.exe in ASUS ATK Package before V1.0.0061 (for Windows 10 notebook PCs) could lead to unsigned code execution wi...
CVE-2019-4388MEDIUM4.8HCL AppScan Source 9.0.3.13 and earlier is susceptible to cross-site scripting (XSS) attacks by allowing users to embed ...
CVE-2019-19742MEDIUM4.8On D-Link DIR-615 devices, the User Account Configuration page is vulnerable to blind XSS via the name field.
CVE-2019-2304HIGH7.8Integer overflow to buffer overflow due to lack of validation of event arguments received from firmware. in Snapdragon A...
CVE-2019-2274HIGH7.8Improper Access Control for RPU write access from secure processor in Snapdragon Auto, Snapdragon Compute, Snapdragon Co...
CVE-2019-2242CRITICAL9.8Device memory may get corrupted because of buffer overflow/underflow. in Snapdragon Auto, Snapdragon Compute, Snapdragon...
CVE-2019-19880HIGH7.5exprListAppendList in window.c in SQLite 3.30.1 allows attackers to trigger an invalid pointer dereference because const...
CVE-2019-10614CRITICAL9.8Out of boundary access is possible as there is no validation of data accessed against the received size of the packet in...
CVE-2019-10607HIGH7.8Out of bounds memcpy can occur by providing the embedded NULL character string and length greater than the actual string...
CVE-2019-10605HIGH7.8Buffer overwrite can occur in IEEE80211 header filling function due to lack of range check of array index received from ...
CVE-2019-10601HIGH7.8Out of bound access can occur while processing firmware event due to lack of validation of WMI message received from fir...
CVE-2019-10600HIGH7.8Use of local variable as argument to netlink CB callback goes out of it scope when callback triggered lead to invalid st...
CVE-2019-10598HIGH7.8Out of bound access can occur while processing peer info in IBSS connection mode due to lack of upper bounds check to en...
CVE-2019-10595HIGH7.8Possible buffer overwrite in message handler due to lack of validation of tid value calculated from packets received fro...
CVE-2019-10584HIGH7.8Possibility of out of bound access in debug queue, if packet size field is corrupted in Snapdragon Auto, Snapdragon Comp...
CVE-2019-10572CRITICAL9.8Improper check in video driver while processing data from video firmware can lead to integer overflow and then buffer ov...
CVE-2019-10564HIGH7.8Possible OOB issue in EEPROM due to lack of check while accessing memory map array at the time of reading operation in S...
CVE-2019-10557CRITICAL9.8Out-of-bound read in the wireless driver in the Linux kernel due to lack of check of buffer length. in Snapdragon Auto, ...
CVE-2019-10544HIGH7.8Improper length check on source buffer to handle userspace data received can lead to out-of-bound access in diag handler...
CVE-2019-10537HIGH7.8Improper validation of event buffer extracted from FW response can lead to integer overflow, which will allow to pass th...
CVE-2019-10536HIGH7.8Potential double free scenario if driver receives another DIAG_EVENT_LOG_SUPPORTED event from firmware as the pointer is...

Check if your code is affected by 2019 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now