2019 CVE Vulnerabilities

17,619 CVEs published in 2019.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2019-19348HIGH7An insecure modification vulnerability in the /etc/passwd file was found in the container openshift/apb-base, affecting ...
CVE-2019-19346HIGH7An insecure modification vulnerability in the /etc/passwd file was found in the container openshift/mariadb-apb, affecti...
CVE-2019-19097HIGH7.5ABB eSOMS versions 4.0 to 6.0.3 accept connections using medium strength ciphers. If a connection is enabled using such ...
CVE-2019-19094HIGH7.6Lack of input checks for SQL queries in ABB eSOMS versions 3.9 to 6.0.3 might allow an attacker SQL injection attacks ag...
CVE-2019-14868HIGH7.8In ksh version 20120801, a flaw was found in the way it evaluates certain environment variables. An attacker could use t...
CVE-2019-3945HIGH7.5Web server running on Parrot ANAFI can be crashed due to the SDK command "Common_CurrentDateTime" being sent to control ...
CVE-2019-3944HIGH7.5Parrot ANAFI is vulnerable to Wi-Fi deauthentication attack, allowing remote and unauthenticated attackers to disconnect...
CVE-2019-3942HIGH7.5Advantech WebAccess 8.3.4 does not properly restrict an RPC call that allows unauthenticated, remote users to read files...
CVE-2019-9507HIGH7.2The web interface of the Vertiv Avocent UMG-4000 version 4.2.1.19 is vulnerable to command injection because the applica...
CVE-2019-17561HIGH7.5The "Apache NetBeans" autoupdate system does not fully validate code signatures. An attacker could modify the downloaded...
CVE-2019-7755HIGH8.8In webERP 4.15, the Import Bank Transactions function fails to sanitize the content of imported MT940 bank statement fil...
CVE-2019-5105HIGH7.5An exploitable memory corruption vulnerability exists in the Name Service Client functionality of 3S-Smart Software Solu...
CVE-2019-7630HIGH7.2An issue was discovered in gdrv.sys in Gigabyte APP Center before 19.0227.1. The vulnerable driver exposes a wrmsr instr...
CVE-2019-7245HIGH7.2An issue was discovered in GPU-Z.sys in TechPowerUp GPU-Z before 2.23.0. The vulnerable driver exposes a wrmsr instructi...
CVE-2019-7244HIGH7.2An issue was discovered in kerneld.sys in AIDA64 before 5.99. The vulnerable driver exposes a wrmsr instruction via IOCT...
CVE-2019-7240HIGH7.2An issue was discovered in WinRing0x64.sys in Moo0 System Monitor 1.83. The vulnerable driver exposes a wrmsr instructio...
CVE-2019-19127HIGH8.1An authentication bypass vulnerability is present in the standalone SITS:Vision 9.7.0 component of Tribal SITS in its de...
CVE-2019-4001HIGH7.8Improper input validation in Druva inSync Client 6.5.0 allows a local, authenticated attacker to execute arbitrary NodeJ...
CVE-2019-20620HIGH7.5An issue was discovered on Samsung mobile devices with P(9.0) software. The Settings application allows unauthenticated ...
CVE-2019-20619HIGH7.5An issue was discovered on Samsung mobile devices with P(9.0) software. Secure Startup leaks keyboard suggested words. T...
CVE-2019-20618HIGH7.5An issue was discovered on Samsung mobile devices with P(9.0) software. The Pin Window feature allows unauthenticated un...
CVE-2019-20614HIGH7.5An issue was discovered on Samsung mobile devices with N(7.x), O(8.x), and P(9.0) software. Allshare allows attackers to...
CVE-2019-20613HIGH8.1An issue was discovered on Samsung mobile devices with N(7.x) and O(8.x) software. There is time-based SQL injection in ...
CVE-2019-20612HIGH7.5An issue was discovered on Samsung mobile devices with N(7.x) and O(8.x) (Broadcom Wi-Fi, and SEC Wi-Fi chipsets) softwa...
CVE-2019-20610HIGH8.1An issue was discovered on Samsung mobile devices with N(7.X) and O(8.X) (Exynos 7570, 7870, 7880, 7885, 8890, 8895, and...

Check if your code is affected by 2019 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now