2019 CVE Vulnerabilities
17,620 CVEs published in 2019.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2019-8355 | — | — | 1.7% | Feb 15, 2019 | An issue was discovered in SoX 14.4.2. In xmalloc.h, there is an integer overflow on the result of multiplication fed in... |
| CVE-2019-0267 | — | — | 0.7% | Feb 15, 2019 | SAP Manufacturing Integration and Intelligence, versions 15.0, 15.1 and 15.2, (Illuminator Servlet) currently does not p... |
| CVE-2019-0266 | — | — | 1.8% | Feb 15, 2019 | Under certain conditions SAP HANA Extended Application Services, version 1.0, advanced model (XS advanced) writes creden... |
| CVE-2019-0265 | — | — | 2.1% | Feb 15, 2019 | SLD Registration of ABAP Platform allows an attacker to prevent legitimate users from accessing a service, either by cra... |
| CVE-2019-0262 | — | — | 0.9% | Feb 15, 2019 | SAP WebIntelligence BILaunchPad, versions 4.10, 4.20, does not sufficiently encode user-controlled inputs in generated H... |
| CVE-2019-0261 | — | — | 3.6% | Feb 15, 2019 | Under certain circumstances, SAP HANA Extended Application Services, advanced model (XS advanced) does not perform authe... |
| CVE-2019-0259 | — | — | 2.0% | Feb 15, 2019 | SAP BusinessObjects, versions 4.2 and 4.3, (Visual Difference) allows an attacker to upload any file (including script f... |
| CVE-2019-0258 | — | — | 1.4% | Feb 15, 2019 | SAP Disclosure Management, version 10.01, does not perform necessary authorization checks for an authenticated user, res... |
| CVE-2019-0256 | — | — | 0.4% | Feb 15, 2019 | Under certain conditions SAP Business One Mobile Android App, version 1.2.12, allows an attacker to access information w... |
| CVE-2019-0255 | — | — | 1.7% | Feb 15, 2019 | SAP NetWeaver AS ABAP Platform, Krnl64nuc 7.74, krnl64UC 7.73, 7.74, Kernel 7.73, 7.74, 7.75, fails to validate type of ... |
| CVE-2019-0254 | — | — | 0.9% | Feb 15, 2019 | SAP Disclosure Management (before version 10.1 Stack 1301) does not sufficiently encode user-controlled inputs, resultin... |
| CVE-2019-0251 | — | — | 1.1% | Feb 15, 2019 | The Fiori Launchpad of SAP BusinessObjects, before versions 4.2 and 4.3, does not sufficiently encode user-controlled in... |
| CVE-2019-8347 | — | — | 0.7% | Feb 15, 2019 | BEESCMS 4.0 has a CSRF vulnerability to add arbitrary VIP accounts via the admin/admin_member.php?action=add&nav=add_web... |
| CVE-2019-8345 | — | — | 0.4% | Feb 15, 2019 | The Help feature in the ES File Explorer File Manager application 4.1.9.7.4 for Android allows session hijacking by a Ma... |
| CVE-2019-8343 | — | — | 1.1% | Feb 15, 2019 | In Netwide Assembler (NASM) 2.14.02, there is a use-after-free in paste_tokens in asm/preproc.c. |
| CVE-2019-6589 | — | — | 0.8% | Feb 14, 2019 | On BIG-IP 14.0.0-14.0.0.2, 13.0.0-13.1.1.3, 12.1.0-12.1.3.7, and 11.6.0-11.6.3.2, a reflected Cross Site Scripting (XSS)... |
| CVE-2019-8337 | — | — | 0.9% | Feb 13, 2019 | In msmtp 1.8.2 and mpop 1.4.3, when tls_trust_file has its default configuration, certificate-verification results are n... |
| CVE-2019-5915 | — | — | 1.1% | Feb 13, 2019 | Open redirect vulnerability in OpenAM (Open Source Edition) 13.0 allows remote attackers to redirect users to arbitrary ... |
| CVE-2019-5914 | — | — | 0.5% | Feb 13, 2019 | V20 PRO L-01J software version L01J20c and L01J20d has a NULL pointer exception flaw that can be used by an attacker to ... |
| CVE-2019-5913 | — | — | 0.8% | Feb 13, 2019 | Untrusted search path vulnerability in the installer of LHMelting (LHMelting for Win32 Ver 1.65.3.6 and earlier) allows ... |
| CVE-2019-5912 | — | — | 0.8% | Feb 13, 2019 | Untrusted search path vulnerability in the installer of UNARJ32.DLL (UNARJ32.DLL for Win32 Ver 1.10.1.25 and earlier) al... |
| CVE-2019-5911 | — | — | 0.8% | Feb 13, 2019 | Untrusted search path vulnerability in the installer of UNLHA32.DLL (UNLHA32.DLL for Win32 Ver 2.67.1.2 and earlier) all... |
| CVE-2019-5910 | — | — | 2.2% | Feb 13, 2019 | Directory traversal vulnerability in HOUSE GATE App for iOS 1.7.8 and earlier allows remote attackers to read arbitrary ... |
| CVE-2019-5909 | — | — | 5.4% | Feb 13, 2019 | License Manager Service of YOKOGAWA products (CENTUM VP (R5.01.00 - R6.06.00), CENTUM VP Entry Class (R5.01.00 - R6.06.0... |
| CVE-2019-8335 | — | — | 0.9% | Feb 13, 2019 | An issue was discovered in SchoolCMS 2.3.1. There is an XSS vulnerability via index.php?a=Index&c=Channel&m=Home&id=[XSS... |
Check if your code is affected by 2019 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now