2019 CVE Vulnerabilities
17,621 CVEs published in 2019.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2019-1390 | HIGH | 7.5 | 6.4% | Nov 12, 2019 | A remote code execution vulnerability exists in the way that the VBScript engine handles objects in memory, aka 'VBScrip... |
| CVE-2019-1389 | HIGH | 8.4 | 4.0% | Nov 12, 2019 | A remote code execution vulnerability exists when Windows Hyper-V on a host server fails to properly validate input from... |
| CVE-2019-1388 | HIGH | 7.8 | 8.6% | Nov 12, 2019 | An elevation of privilege vulnerability exists in the Windows Certificate Dialog when it does not properly enforce user ... |
| CVE-2019-1385 | HIGH | 7.8 | 3.6% | Nov 12, 2019 | An elevation of privilege vulnerability exists when the Windows AppX Deployment Extensions improperly performs privilege... |
| CVE-2019-1384 | CRITICAL | 9.9 | 6.1% | Nov 12, 2019 | A security feature bypass vulnerability exists where a NETLOGON message is able to obtain the session key and sign messa... |
| CVE-2019-1383 | HIGH | 7.8 | 0.7% | Nov 12, 2019 | An elevation of privilege vulnerability exists when the Windows Data Sharing Service improperly handles file operations,... |
| CVE-2019-1382 | MEDIUM | 5.5 | 1.2% | Nov 12, 2019 | An elevation of privilege vulnerability exists when ActiveX Installer service may allow access to files without proper a... |
| CVE-2019-1381 | MEDIUM | 5.5 | 1.5% | Nov 12, 2019 | An information disclosure vulnerability exists when the Windows Servicing Stack allows access to unprivileged file locat... |
| CVE-2019-1380 | HIGH | 7.8 | 0.7% | Nov 12, 2019 | A local elevation of privilege vulnerability exists in how splwow64.exe handles certain calls, aka 'Microsoft splwow64 E... |
| CVE-2019-1379 | HIGH | 7.8 | 0.7% | Nov 12, 2019 | An elevation of privilege vulnerability exists when the Windows Data Sharing Service improperly handles file operations,... |
| CVE-2019-1374 | MEDIUM | 5.5 | 6.6% | Nov 12, 2019 | An information disclosure vulnerability exists in the way Windows Error Reporting (WER) handles objects in memory, aka '... |
| CVE-2019-1373 | CRITICAL | 9.8 | 18.2% | Nov 12, 2019 | A remote code execution vulnerability exists in Microsoft Exchange through the deserialization of metadata via PowerShel... |
| CVE-2019-1370 | MEDIUM | 5.5 | 1.5% | Nov 12, 2019 | An information disclosure vulnerability exists when affected Open Enclave SDK versions improperly handle objects in memo... |
| CVE-2019-1324 | MEDIUM | 5.3 | 4.3% | Nov 12, 2019 | An information disclosure vulnerability exists when the Windows TCP/IP stack improperly handles IPv6 flowlabel filled in... |
| CVE-2019-1310 | MEDIUM | 6.8 | 5.1% | Nov 12, 2019 | A denial of service vulnerability exists when Microsoft Hyper-V Network Switch on a host server fails to properly valida... |
| CVE-2019-1309 | MEDIUM | 6.8 | 5.1% | Nov 12, 2019 | A denial of service vulnerability exists when Microsoft Hyper-V Network Switch on a host server fails to properly valida... |
| CVE-2019-1234 | HIGH | 7.5 | 57.9% | Nov 12, 2019 | A spoofing vulnerability exists when Azure Stack fails to validate certain requests, aka 'Azure Stack Spoofing Vulnerabi... |
| CVE-2019-12720 | HIGH | 7.5 | 1.7% | Nov 12, 2019 | AUO SunVeillance Monitoring System before v1.1.9e is vulnerable to mvc_send_mail.aspx (MailAdd parameter) SQL Injection.... |
| CVE-2019-12719 | CRITICAL | 9.8 | 2.1% | Nov 12, 2019 | An issue was discovered in Picture_Manage_mvc.aspx in AUO SunVeillance Monitoring System before v1.1.9e. There is an inc... |
| CVE-2019-0721 | CRITICAL | 9.1 | 10.3% | Nov 12, 2019 | A remote code execution vulnerability exists when Windows Hyper-V Network Switch on a host server fails to properly vali... |
| CVE-2019-0719 | CRITICAL | 9.1 | 10.7% | Nov 12, 2019 | A remote code execution vulnerability exists when Windows Hyper-V Network Switch on a host server fails to properly vali... |
| CVE-2019-0712 | MEDIUM | 6.8 | 5.2% | Nov 12, 2019 | A denial of service vulnerability exists when Microsoft Hyper-V Network Switch on a host server fails to properly valida... |
| CVE-2019-17360 | HIGH | 7.5 | 1.3% | Nov 12, 2019 | A vulnerability in Hitachi Command Suite 7.x and 8.x before 8.7.0-00 allows an unauthenticated remote user to trigger a ... |
| CVE-2019-15815 | MEDIUM | 6.5 | 0.8% | Nov 12, 2019 | ZyXEL P-1302-T10D v3 devices with firmware version 2.00(ABBX.3) and earlier do not properly enforce access control and c... |
| CVE-2019-18926 | MEDIUM | 6.1 | 0.6% | Nov 12, 2019 | Systematic IRIS Standards Management (ISM) v2.1 SP1 89 is vulnerable to unauthenticated reflected Cross Site Scripting (... |
Check if your code is affected by 2019 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now