2019 CVE Vulnerabilities
17,620 CVEs published in 2019.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2019-11992 | MEDIUM | 6.1 | 1.0% | Dec 18, 2019 | A security vulnerability in HPE OneView for VMware vCenter 9.5 could be exploited remotely to allow Cross-Site Scripting... |
| CVE-2019-5152 | HIGH | 7.4 | 1.4% | Dec 18, 2019 | An exploitable information disclosure vulnerability exists in the network packet handling functionality of Shadowsocks-l... |
| CVE-2019-11400 | CRITICAL | 9.8 | 16.6% | Dec 18, 2019 | An issue was discovered on TRENDnet TEW-651BR 2.04B1, TEW-652BRP 3.04b01, and TEW-652BRU 1.00b12 devices. A buffer overf... |
| CVE-2019-11399 | CRITICAL | 9.8 | 3.0% | Dec 18, 2019 | An issue was discovered on TRENDnet TEW-651BR 2.04B1, TEW-652BRP 3.04b01, and TEW-652BRU 1.00b12 devices. OS command inj... |
| CVE-2019-19235 | HIGH | 7 | 0.4% | Dec 18, 2019 | AsLdrSrv.exe in ASUS ATK Package before V1.0.0061 (for Windows 10 notebook PCs) could lead to unsigned code execution wi... |
| CVE-2019-4388 | MEDIUM | 4.8 | 0.5% | Dec 18, 2019 | HCL AppScan Source 9.0.3.13 and earlier is susceptible to cross-site scripting (XSS) attacks by allowing users to embed ... |
| CVE-2019-19742 | MEDIUM | 4.8 | 19.8% | Dec 18, 2019 | On D-Link DIR-615 devices, the User Account Configuration page is vulnerable to blind XSS via the name field. |
| CVE-2019-2304 | HIGH | 7.8 | 0.2% | Dec 18, 2019 | Integer overflow to buffer overflow due to lack of validation of event arguments received from firmware. in Snapdragon A... |
| CVE-2019-2274 | HIGH | 7.8 | 0.2% | Dec 18, 2019 | Improper Access Control for RPU write access from secure processor in Snapdragon Auto, Snapdragon Compute, Snapdragon Co... |
| CVE-2019-2242 | CRITICAL | 9.8 | 1.1% | Dec 18, 2019 | Device memory may get corrupted because of buffer overflow/underflow. in Snapdragon Auto, Snapdragon Compute, Snapdragon... |
| CVE-2019-19880 | HIGH | 7.5 | 6.9% | Dec 18, 2019 | exprListAppendList in window.c in SQLite 3.30.1 allows attackers to trigger an invalid pointer dereference because const... |
| CVE-2019-10614 | CRITICAL | 9.8 | 0.9% | Dec 18, 2019 | Out of boundary access is possible as there is no validation of data accessed against the received size of the packet in... |
| CVE-2019-10607 | HIGH | 7.8 | 0.2% | Dec 18, 2019 | Out of bounds memcpy can occur by providing the embedded NULL character string and length greater than the actual string... |
| CVE-2019-10605 | HIGH | 7.8 | 0.2% | Dec 18, 2019 | Buffer overwrite can occur in IEEE80211 header filling function due to lack of range check of array index received from ... |
| CVE-2019-10601 | HIGH | 7.8 | 0.2% | Dec 18, 2019 | Out of bound access can occur while processing firmware event due to lack of validation of WMI message received from fir... |
| CVE-2019-10600 | HIGH | 7.8 | 0.2% | Dec 18, 2019 | Use of local variable as argument to netlink CB callback goes out of it scope when callback triggered lead to invalid st... |
| CVE-2019-10598 | HIGH | 7.8 | 0.2% | Dec 18, 2019 | Out of bound access can occur while processing peer info in IBSS connection mode due to lack of upper bounds check to en... |
| CVE-2019-10595 | HIGH | 7.8 | 0.2% | Dec 18, 2019 | Possible buffer overwrite in message handler due to lack of validation of tid value calculated from packets received fro... |
| CVE-2019-10584 | HIGH | 7.8 | 0.2% | Dec 18, 2019 | Possibility of out of bound access in debug queue, if packet size field is corrupted in Snapdragon Auto, Snapdragon Comp... |
| CVE-2019-10572 | CRITICAL | 9.8 | 0.7% | Dec 18, 2019 | Improper check in video driver while processing data from video firmware can lead to integer overflow and then buffer ov... |
| CVE-2019-10564 | HIGH | 7.8 | 0.2% | Dec 18, 2019 | Possible OOB issue in EEPROM due to lack of check while accessing memory map array at the time of reading operation in S... |
| CVE-2019-10557 | CRITICAL | 9.8 | 1.1% | Dec 18, 2019 | Out-of-bound read in the wireless driver in the Linux kernel due to lack of check of buffer length. in Snapdragon Auto, ... |
| CVE-2019-10544 | HIGH | 7.8 | 0.2% | Dec 18, 2019 | Improper length check on source buffer to handle userspace data received can lead to out-of-bound access in diag handler... |
| CVE-2019-10537 | HIGH | 7.8 | 0.2% | Dec 18, 2019 | Improper validation of event buffer extracted from FW response can lead to integer overflow, which will allow to pass th... |
| CVE-2019-10536 | HIGH | 7.8 | 0.2% | Dec 18, 2019 | Potential double free scenario if driver receives another DIAG_EVENT_LOG_SUPPORTED event from firmware as the pointer is... |
Check if your code is affected by 2019 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now