2019 CVE Vulnerabilities
17,621 CVEs published in 2019.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2019-5096 | CRITICAL | 9.8 | 70.8% | Dec 3, 2019 | An exploitable code execution vulnerability exists in the processing of multi-part/form-data requests within the base Go... |
| CVE-2019-5083 | HIGH | 8.8 | 3.6% | Dec 3, 2019 | An exploitable out-of-bounds write vulnerability exists in the igcore19d.dll TIFdecodethunderscan function of Accusoft I... |
| CVE-2019-5076 | HIGH | 8.8 | 3.7% | Dec 3, 2019 | An exploitable out-of-bounds write vulnerability exists in the igcore19d.dll PNG header-parser of the Accusoft ImageGear... |
| CVE-2019-3750 | MEDIUM | 5.5 | 0.3% | Dec 3, 2019 | Dell Command Update versions prior to 3.1 contain an Arbitrary File Deletion Vulnerability. A local authenticated malici... |
| CVE-2019-3749 | MEDIUM | 5.5 | 0.3% | Dec 3, 2019 | Dell Command Update versions prior to 3.1 contain an Arbitrary File Deletion Vulnerability. A local authenticated malici... |
| CVE-2019-19543 | HIGH | 7.8 | 0.4% | Dec 3, 2019 | In the Linux kernel before 5.1.6, there is a use-after-free in serial_ir_init_module() in drivers/media/rc/serial_ir.c. |
| CVE-2019-18574 | MEDIUM | 4.8 | 0.6% | Dec 3, 2019 | RSA Authentication Manager software versions prior to 8.4 P8 contain a stored cross-site scripting vulnerability in the ... |
| CVE-2019-9689 | HIGH | 7.5 | 1.5% | Dec 3, 2019 | process_certificate in tls1.c in Cameron Hamilton-Rich axTLS through 2.1.5 has a Buffer Overflow via a crafted TLS certi... |
| CVE-2019-19459 | CRITICAL | 9.8 | 3.5% | Dec 3, 2019 | An issue was discovered in SALTO ProAccess SPACE 5.4.3.0. An attacker can write arbitrary content to arbitrary files, as... |
| CVE-2019-19458 | HIGH | 8.6 | 2.8% | Dec 3, 2019 | SALTO ProAccess SPACE 5.4.3.0 allows Directory Traversal in the Data Export feature. |
| CVE-2019-19457 | MEDIUM | 5.4 | 0.6% | Dec 3, 2019 | SALTO ProAccess SPACE 5.4.3.0 allows XSS. |
| CVE-2019-19383 | HIGH | 8.8 | 2.8% | Dec 3, 2019 | freeFTPd 1.0.8 has a Post-Authentication Buffer Overflow via a crafted SIZE command (this is exploitable even if logging... |
| CVE-2019-19382 | HIGH | 7.8 | 0.5% | Dec 3, 2019 | Max Secure Anti Virus Plus 19.0.4.020 has Insecure Permissions on the installation directory. Local attackers can replac... |
| CVE-2019-18993 | MEDIUM | 5.4 | 0.5% | Dec 3, 2019 | OpenWrt 18.06.4 allows XSS via the "New port forward" Name field to the cgi-bin/luci/admin/network/firewall/forwards URI... |
| CVE-2019-18992 | MEDIUM | 5.4 | 0.5% | Dec 3, 2019 | OpenWrt 18.06.4 allows XSS via these Name fields to the cgi-bin/luci/admin/network/firewall/rules URI: "Open ports on ro... |
| CVE-2019-16885 | CRITICAL | 9.8 | 4.6% | Dec 3, 2019 | In OkayCMS through 2.3.4, an unauthenticated attacker can achieve remote code execution by injecting a malicious PHP obj... |
| CVE-2019-13456 | MEDIUM | 6.5 | 1.6% | Dec 3, 2019 | In FreeRADIUS 3.0 through 3.0.19, on average 1 in every 2048 EAP-pwd handshakes fails because the password element canno... |
| CVE-2019-10013 | HIGH | 7.5 | 1.9% | Dec 3, 2019 | The asn1_signature function in asn1.c in Cameron Hamilton-Rich axTLS through 2.1.5 has a Buffer Overflow that allows rem... |
| CVE-2019-19460 | MEDIUM | 5.5 | 0.4% | Dec 3, 2019 | An issue was discovered in SALTO ProAccess SPACE 5.4.3.0. The product's webserver runs as a Windows service with local S... |
| CVE-2019-7366 | HIGH | 7.8 | 0.9% | Dec 3, 2019 | Buffer overflow vulnerability in Autodesk FBX Software Development Kit version 2019.5. A user may be tricked into openin... |
| CVE-2019-7365 | HIGH | 7.8 | 0.4% | Dec 3, 2019 | DLL preloading vulnerability in Autodesk Desktop Application versions 7.0.16.29 and earlier. An attacker may trick a use... |
| CVE-2019-3990 | MEDIUM | 4.3 | 1.0% | Dec 3, 2019 | A User Enumeration flaw exists in Harbor. The issue is present in the "/users" API endpoint. This endpoint is supposed t... |
| CVE-2019-19537 | MEDIUM | 4.2 | 0.3% | Dec 3, 2019 | In the Linux kernel before 5.2.10, there is a race condition bug that can be caused by a malicious USB device in the USB... |
| CVE-2019-19536 | MEDIUM | 4.6 | 0.4% | Dec 3, 2019 | In the Linux kernel before 5.2.9, there is an info-leak bug that can be caused by a malicious USB device in the drivers/... |
| CVE-2019-19535 | MEDIUM | 4.6 | 0.5% | Dec 3, 2019 | In the Linux kernel before 5.2.9, there is an info-leak bug that can be caused by a malicious USB device in the drivers/... |
Check if your code is affected by 2019 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now