2019 CVE Vulnerabilities

17,621 CVEs published in 2019.

CVE IDSeverityCVSSDescription
CVE-2019-19491MEDIUM6.1TestLink 1.9.19 has XSS via the lib/testcases/archiveData.php edit parameter, the index.php reqURI parameter, or the URI...
CVE-2019-19490HIGH7.3LiteManager 4.5.0 has weak permissions (Everyone: Full Control) in the "LiteManagerFree - Server" folder, as demonstrate...
CVE-2019-19489MEDIUM5.5SMPlayer 19.5.0 has a buffer overflow via a long .m3u file.
CVE-2019-15631CRITICAL9.8Remote Code Execution vulnerability in MuleSoft Mule CE/EE 3.x and API Gateway 2.x released before October 31, 2019 allo...
CVE-2019-19481MEDIUM4.6An issue was discovered in OpenSC through 0.19.0 and 0.20.x through 0.20.0-rc3. libopensc/card-cac1.c mishandles buffer ...
CVE-2019-19480MEDIUM4.6An issue was discovered in OpenSC through 0.19.0 and 0.20.x through 0.20.0-rc3. libopensc/pkcs15-prkey.c has an incorrec...
CVE-2019-19479MEDIUM5.5An issue was discovered in OpenSC through 0.19.0 and 0.20.x through 0.20.0-rc3. libopensc/card-setcos.c has an incorrect...
CVE-2019-18609CRITICAL9.8An issue was discovered in amqp_handle_input in amqp_connection.c in rabbitmq-c 0.9.0. There is an integer overflow that...
CVE-2019-19469HIGH8.8In Zmanda Management Console 3.3.9, ZMC_Admin_Advanced?form=adminTasks&action=Apply&command= allows CSRF, as demonstrate...
CVE-2019-19269MEDIUM4.9An issue was discovered in tls_verify_crl in ProFTPD through 1.3.6b. A dereference of a NULL pointer may occur. This poi...
CVE-2019-19468HIGH7.8Free Photo Viewer 1.3 allows remote attackers to execute arbitrary code via a crafted BMP and/or TIFF file that triggers...
CVE-2019-19464MEDIUM5.3The CBC Gem application before 9.24.1 for Android and before 9.26.0 for iOS has Unencrypted Analytics.
CVE-2019-19463MEDIUM5.3The Anhui Huami Mi Fit application before 4.0.11 for Android has an Unencrypted Update Check.
CVE-2019-19462MEDIUM5.5relay_open in kernel/relay.c in the Linux kernel through 5.4.1 allows local users to cause a denial of service (such as ...
CVE-2019-19451MEDIUM5.5When GNOME Dia before 2019-11-27 is launched with a filename argument that is not a valid codepoint in the current encod...
CVE-2019-19396HIGH7.5illumos, as used in OmniOS Community Edition before r151030y, allows a kernel crash via an application with multiple thr...
CVE-2019-5309MEDIUM4.6Honor play smartphones with versions earlier than 9.1.0.333(C00E333R1P1T8) have an information disclosure vulnerability ...
CVE-2019-5308LOW2.4Mate 20 RS smartphones with versions earlier than 9.1.0.135(C786E133R3P1) have an improper authorization vulnerability. ...
CVE-2019-5271MEDIUM5.4There is an information leak vulnerability in Huawei smart speaker Myna. When the smart speaker is paired with the cloud...
CVE-2019-5268HIGH8.1Some Huawei home routers have an input validation vulnerability. Due to input parameter is not correctly verified, an at...
CVE-2019-5247MEDIUM5.5Huawei Atlas 300, Atlas 500 have a buffer overflow vulnerability. A local, authenticated attacker may craft specific par...
CVE-2019-5269HIGH7.8Some Huawei home routers have an improper authorization vulnerability. Due to improper authorization of certain programs...
CVE-2019-5263MEDIUM5.5HiSuite with 9.1.0.305 and earlier versions and 9.1.0.305(MAC) and earlier versions and HwBackup with earlier versions b...
CVE-2019-5232HIGH7.5There is a use of insufficiently random values vulnerability in Huawei ViewPoint products. An unauthenticated, remote at...
CVE-2019-5227MEDIUM5.5P30, P30 Pro, Mate 20 smartphones with software of versions earlier than ELLE-AL00B 9.1.0.193(C00E190R2P1), versions ear...

Check if your code is affected by 2019 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now