2019 CVE Vulnerabilities

17,619 CVEs published in 2019.

Filter:CRITICALClear
CVE IDSeverityCVSSDescription
CVE-2019-25365CRITICAL9.8ChaosPro 2.0 contains a buffer overflow vulnerability in the configuration file path handling that allows attackers to e...
CVE-2019-25364CRITICAL9.8MailCarrier 2.51 contains a buffer overflow vulnerability in the POP3 USER command that allows remote attackers to execu...
CVE-2019-25362CRITICAL9.8WMV to AVI MPEG DVD WMV Convertor 4.6.1217 contains a buffer overflow vulnerability that allows attackers to execute arb...
CVE-2019-25361CRITICAL9.8Ayukov NFTP client 1.71 contains a buffer overflow vulnerability in the SYST command handling that allows remote attacke...
CVE-2019-25360CRITICAL9.8Aida64 Engineer 6.10.5200 contains a buffer overflow vulnerability in the CSV logging configuration that allows attacker...
CVE-2019-25337CRITICAL9.8OwnCloud 8.1.8 contains a username enumeration vulnerability that allows remote attackers to discover user accounts by m...
CVE-2019-25327CRITICAL9.8Prime95 version 29.8 build 6 contains a buffer overflow vulnerability in the user ID input field that allows remote atta...
CVE-2019-25322CRITICAL9.3Heatmiser Netmonitor 3.03 contains a hardcoded credentials vulnerability in the networkSetup.htm page with predictable a...
CVE-2019-25321CRITICAL9.8FTP Navigator 8.03 contains a stack overflow vulnerability that allows attackers to execute arbitrary code by overwritin...
CVE-2019-25319CRITICAL9.8Domain Quester Pro 6.02 contains a stack overflow vulnerability that allows remote attackers to execute arbitrary code b...
CVE-2019-25298CRITICAL9.1html5_snmp 1.11 contains multiple SQL injection vulnerabilities that allow attackers to manipulate database queries thro...
CVE-2019-25232CRITICAL9.8NetPCLinker 1.0.0.0 contains a buffer overflow vulnerability in the Clients Control Panel DNS/IP field that allows attac...
CVE-2019-25296CRITICAL9.8The WP Cost Estimation plugin for WordPress is vulnerable to arbitrary file uploads and deletion due to missing file typ...
CVE-2019-25291CRITICAL9.3INIM Electronics Smartliving SmartLAN/G/SI <=6.x contains hard-coded credentials in its Linux distribution image that ca...
CVE-2019-25282CRITICAL9.8V-SOL GPON/EPON OLT Platform v2.03 contains an open redirect vulnerability in the script that allows attackers to manipu...
CVE-2019-25278CRITICAL9.1FaceSentry Access Control System 6.4.8 contains a cleartext transmission vulnerability that allows remote attackers to i...
CVE-2019-25268CRITICAL9.8NREL BEopt 2.8.0.0 contains a DLL hijacking vulnerability that allows attackers to load arbitrary libraries by tricking ...
CVE-2019-25249CRITICAL9.8devolo dLAN 500 AV Wireless+ 3.1.0-1 contains an authentication bypass vulnerability that allows attackers to enable hid...
CVE-2019-25241CRITICAL9.8FaceSentry Access Control System 6.4.8 contains a critical authentication vulnerability with hard-coded SSH credentials ...
CVE-2019-25240CRITICAL9.8Rifatron 5brid DVR contains an unauthenticated vulnerability in the animate.cgi script that allows unauthorized access t...
CVE-2019-25237CRITICAL9.8V-SOL GPON/EPON OLT Platform v2.03 contains a privilege escalation vulnerability that allows normal users to gain admini...
CVE-2019-25236CRITICAL9.8iSeeQ Hybrid DVR WH-H4 1.03R contains an unauthenticated vulnerability in the get_jpeg script that allows unauthorized a...
CVE-2019-25235CRITICAL9.8Smartwares HOME easy 1.0.9 contains an authentication bypass vulnerability that allows unauthenticated attackers to acce...
CVE-2019-19144CRITICAL9.8XML External Entity Injection vulnerability in Quantum DXi6702 2.3.0.3 (11449-53631 Build304) devices via rest/Users?act...
CVE-2019-25224CRITICAL9.8The WP Database Backup plugin for WordPress is vulnerable to OS Command Injection in versions before 5.2 via the mysqldu...

Check if your code is affected by 2019 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now