2019 CVE Vulnerabilities

17,619 CVEs published in 2019.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2019-20028HIGH7.5Aspire-derived NEC PBXes operating InMail software, including all versions of SV8100, SV9100, SL1100 and SL2100 devices ...
CVE-2019-20026HIGH7.5The WebPro interface in NEC SV9100 software releases 7.0 or higher allows unauthenticated remote attackers to reset all ...
CVE-2019-18619HIGH7.8Incorrect parameter validation in the synaTee component of Synaptics WBF drivers using an SGX enclave (all versions prio...
CVE-2019-20915HIGH8.1An issue was discovered in GNU LibreDWG through 0.9.3. Crafted input will lead to a heap-based buffer over-read in bit_w...
CVE-2019-20913HIGH8.1An issue was discovered in GNU LibreDWG through 0.9.3. Crafted input will lead to a heap-based buffer over-read in dwg_e...
CVE-2019-20912HIGH8.8An issue was discovered in GNU LibreDWG through 0.9.3. Crafted input will lead to a stack overflow in bits.c, possibly r...
CVE-2019-20910HIGH8.1An issue was discovered in GNU LibreDWG through 0.9.3. Crafted input will lead to a heap-based buffer over-read in decod...
CVE-2019-20909HIGH7.5An issue was discovered in GNU LibreDWG through 0.9.3. There is a NULL pointer dereference in the function dwg_encode_LW...
CVE-2019-17637HIGH7.1In all versions of Eclipse Web Tools Platform through release 3.18 (2020-06), XML and DTD files referring to external en...
CVE-2019-12784HIGH8.8An issue was discovered in Verint Impact 360 15.1. At wfo/control/signin, the login form can accept submissions from ext...
CVE-2019-4591HIGH7.8IBM Maximo Asset Management 7.6.0 and 7.6.1 does not invalidate session after logout which could allow a local user to i...
CVE-2019-20907HIGH7.5In Lib/tarfile.py in Python through 3.8.3, an attacker is able to craft a TAR archive leading to an infinite loop when o...
CVE-2019-20898HIGH7.5Affected versions of Atlassian Jira Server and Data Center allow remote attackers to access sensitive information withou...
CVE-2019-19417HIGH7.5The SIP module of some Huawei products have a denial of service (DoS) vulnerability. A remote attacker could exploit the...
CVE-2019-19416HIGH7.5The SIP module of some Huawei products have a denial of service (DoS) vulnerability. A remote attacker could exploit the...
CVE-2019-19415HIGH7.5The SIP module of some Huawei products have a denial of service (DoS) vulnerability. A remote attacker could exploit the...
CVE-2019-8250HIGH7.8Adobe Acrobat and Reader versions 2019.012.20035 and earlier, 2019.012.20035 and earlier, 2017.011.30142 and earlier, 20...
CVE-2019-8249HIGH7.8Adobe Acrobat and Reader versions 2019.012.20035 and earlier, 2019.012.20035 and earlier, 2017.011.30142 and earlier, 20...
CVE-2019-8066HIGH7.8Adobe Acrobat and Reader versions 2019.012.20035 and earlier, 2019.012.20035 and earlier, 2017.011.30142 and earlier, 20...
CVE-2019-20419HIGH7.8Affected versions of Atlassian Jira Server and Data Center allow remote attackers to execute arbitrary code via a DLL hi...
CVE-2019-20894HIGH7.5Traefik 2.x, in certain configurations, allows HTTPS sessions to proceed without mutual TLS verification in a situation ...
CVE-2019-15312HIGH8.8An issue was discovered on Zolo Halo devices via the Linkplay firmware. There is a Zolo Halo DNS rebinding attack. The d...
CVE-2019-4676HIGH7.8IBM Security Identity Manager Virtual Appliance 7.0.2 stores user credentials in plain in clear text which can be read b...
CVE-2019-19163HIGH8.8A Vulnerability in the firmware of COMMAX WallPad(CDP-1020MB) allow an unauthenticated adjacent attacker to execute arbi...
CVE-2019-19161HIGH7.2CyMiInstaller322 ActiveX which runs MIPLATFORM downloads files required to run applications. A vulnerability in download...

Check if your code is affected by 2019 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now