2019 CVE Vulnerabilities

17,621 CVEs published in 2019.

CVE IDSeverityCVSSDescription
CVE-2019-1390HIGH7.5A remote code execution vulnerability exists in the way that the VBScript engine handles objects in memory, aka 'VBScrip...
CVE-2019-1389HIGH8.4A remote code execution vulnerability exists when Windows Hyper-V on a host server fails to properly validate input from...
CVE-2019-1388HIGH7.8An elevation of privilege vulnerability exists in the Windows Certificate Dialog when it does not properly enforce user ...
CVE-2019-1385HIGH7.8An elevation of privilege vulnerability exists when the Windows AppX Deployment Extensions improperly performs privilege...
CVE-2019-1384CRITICAL9.9A security feature bypass vulnerability exists where a NETLOGON message is able to obtain the session key and sign messa...
CVE-2019-1383HIGH7.8An elevation of privilege vulnerability exists when the Windows Data Sharing Service improperly handles file operations,...
CVE-2019-1382MEDIUM5.5An elevation of privilege vulnerability exists when ActiveX Installer service may allow access to files without proper a...
CVE-2019-1381MEDIUM5.5An information disclosure vulnerability exists when the Windows Servicing Stack allows access to unprivileged file locat...
CVE-2019-1380HIGH7.8A local elevation of privilege vulnerability exists in how splwow64.exe handles certain calls, aka 'Microsoft splwow64 E...
CVE-2019-1379HIGH7.8An elevation of privilege vulnerability exists when the Windows Data Sharing Service improperly handles file operations,...
CVE-2019-1374MEDIUM5.5An information disclosure vulnerability exists in the way Windows Error Reporting (WER) handles objects in memory, aka '...
CVE-2019-1373CRITICAL9.8A remote code execution vulnerability exists in Microsoft Exchange through the deserialization of metadata via PowerShel...
CVE-2019-1370MEDIUM5.5An information disclosure vulnerability exists when affected Open Enclave SDK versions improperly handle objects in memo...
CVE-2019-1324MEDIUM5.3An information disclosure vulnerability exists when the Windows TCP/IP stack improperly handles IPv6 flowlabel filled in...
CVE-2019-1310MEDIUM6.8A denial of service vulnerability exists when Microsoft Hyper-V Network Switch on a host server fails to properly valida...
CVE-2019-1309MEDIUM6.8A denial of service vulnerability exists when Microsoft Hyper-V Network Switch on a host server fails to properly valida...
CVE-2019-1234HIGH7.5A spoofing vulnerability exists when Azure Stack fails to validate certain requests, aka 'Azure Stack Spoofing Vulnerabi...
CVE-2019-12720HIGH7.5AUO SunVeillance Monitoring System before v1.1.9e is vulnerable to mvc_send_mail.aspx (MailAdd parameter) SQL Injection....
CVE-2019-12719CRITICAL9.8An issue was discovered in Picture_Manage_mvc.aspx in AUO SunVeillance Monitoring System before v1.1.9e. There is an inc...
CVE-2019-0721CRITICAL9.1A remote code execution vulnerability exists when Windows Hyper-V Network Switch on a host server fails to properly vali...
CVE-2019-0719CRITICAL9.1A remote code execution vulnerability exists when Windows Hyper-V Network Switch on a host server fails to properly vali...
CVE-2019-0712MEDIUM6.8A denial of service vulnerability exists when Microsoft Hyper-V Network Switch on a host server fails to properly valida...
CVE-2019-17360HIGH7.5A vulnerability in Hitachi Command Suite 7.x and 8.x before 8.7.0-00 allows an unauthenticated remote user to trigger a ...
CVE-2019-15815MEDIUM6.5ZyXEL P-1302-T10D v3 devices with firmware version 2.00(ABBX.3) and earlier do not properly enforce access control and c...
CVE-2019-18926MEDIUM6.1Systematic IRIS Standards Management (ISM) v2.1 SP1 89 is vulnerable to unauthenticated reflected Cross Site Scripting (...

Check if your code is affected by 2019 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now