2019 CVE Vulnerabilities
17,619 CVEs published in 2019.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2019-19348 | HIGH | 7 | 0.3% | Apr 2, 2020 | An insecure modification vulnerability in the /etc/passwd file was found in the container openshift/apb-base, affecting ... |
| CVE-2019-19346 | HIGH | 7 | 0.3% | Apr 2, 2020 | An insecure modification vulnerability in the /etc/passwd file was found in the container openshift/mariadb-apb, affecti... |
| CVE-2019-19097 | HIGH | 7.5 | 0.7% | Apr 2, 2020 | ABB eSOMS versions 4.0 to 6.0.3 accept connections using medium strength ciphers. If a connection is enabled using such ... |
| CVE-2019-19094 | HIGH | 7.6 | 0.9% | Apr 2, 2020 | Lack of input checks for SQL queries in ABB eSOMS versions 3.9 to 6.0.3 might allow an attacker SQL injection attacks ag... |
| CVE-2019-14868 | HIGH | 7.8 | 1.4% | Apr 2, 2020 | In ksh version 20120801, a flaw was found in the way it evaluates certain environment variables. An attacker could use t... |
| CVE-2019-3945 | HIGH | 7.5 | 1.1% | Apr 1, 2020 | Web server running on Parrot ANAFI can be crashed due to the SDK command "Common_CurrentDateTime" being sent to control ... |
| CVE-2019-3944 | HIGH | 7.5 | 1.5% | Apr 1, 2020 | Parrot ANAFI is vulnerable to Wi-Fi deauthentication attack, allowing remote and unauthenticated attackers to disconnect... |
| CVE-2019-3942 | HIGH | 7.5 | 1.4% | Apr 1, 2020 | Advantech WebAccess 8.3.4 does not properly restrict an RPC call that allows unauthenticated, remote users to read files... |
| CVE-2019-9507 | HIGH | 7.2 | 2.1% | Mar 30, 2020 | The web interface of the Vertiv Avocent UMG-4000 version 4.2.1.19 is vulnerable to command injection because the applica... |
| CVE-2019-17561 | HIGH | 7.5 | 1.6% | Mar 30, 2020 | The "Apache NetBeans" autoupdate system does not fully validate code signatures. An attacker could modify the downloaded... |
| CVE-2019-7755 | HIGH | 8.8 | 2.1% | Mar 30, 2020 | In webERP 4.15, the Import Bank Transactions function fails to sanitize the content of imported MT940 bank statement fil... |
| CVE-2019-5105 | HIGH | 7.5 | 2.2% | Mar 26, 2020 | An exploitable memory corruption vulnerability exists in the Name Service Client functionality of 3S-Smart Software Solu... |
| CVE-2019-7630 | HIGH | 7.2 | 3.1% | Mar 25, 2020 | An issue was discovered in gdrv.sys in Gigabyte APP Center before 19.0227.1. The vulnerable driver exposes a wrmsr instr... |
| CVE-2019-7245 | HIGH | 7.2 | 2.4% | Mar 25, 2020 | An issue was discovered in GPU-Z.sys in TechPowerUp GPU-Z before 2.23.0. The vulnerable driver exposes a wrmsr instructi... |
| CVE-2019-7244 | HIGH | 7.2 | 2.4% | Mar 25, 2020 | An issue was discovered in kerneld.sys in AIDA64 before 5.99. The vulnerable driver exposes a wrmsr instruction via IOCT... |
| CVE-2019-7240 | HIGH | 7.2 | 2.4% | Mar 25, 2020 | An issue was discovered in WinRing0x64.sys in Moo0 System Monitor 1.83. The vulnerable driver exposes a wrmsr instructio... |
| CVE-2019-19127 | HIGH | 8.1 | 1.3% | Mar 25, 2020 | An authentication bypass vulnerability is present in the standalone SITS:Vision 9.7.0 component of Tribal SITS in its de... |
| CVE-2019-4001 | HIGH | 7.8 | 0.6% | Mar 24, 2020 | Improper input validation in Druva inSync Client 6.5.0 allows a local, authenticated attacker to execute arbitrary NodeJ... |
| CVE-2019-20620 | HIGH | 7.5 | 0.3% | Mar 24, 2020 | An issue was discovered on Samsung mobile devices with P(9.0) software. The Settings application allows unauthenticated ... |
| CVE-2019-20619 | HIGH | 7.5 | 0.4% | Mar 24, 2020 | An issue was discovered on Samsung mobile devices with P(9.0) software. Secure Startup leaks keyboard suggested words. T... |
| CVE-2019-20618 | HIGH | 7.5 | 0.3% | Mar 24, 2020 | An issue was discovered on Samsung mobile devices with P(9.0) software. The Pin Window feature allows unauthenticated un... |
| CVE-2019-20614 | HIGH | 7.5 | 0.4% | Mar 24, 2020 | An issue was discovered on Samsung mobile devices with N(7.x), O(8.x), and P(9.0) software. Allshare allows attackers to... |
| CVE-2019-20613 | HIGH | 8.1 | 0.4% | Mar 24, 2020 | An issue was discovered on Samsung mobile devices with N(7.x) and O(8.x) software. There is time-based SQL injection in ... |
| CVE-2019-20612 | HIGH | 7.5 | 0.4% | Mar 24, 2020 | An issue was discovered on Samsung mobile devices with N(7.x) and O(8.x) (Broadcom Wi-Fi, and SEC Wi-Fi chipsets) softwa... |
| CVE-2019-20610 | HIGH | 8.1 | 0.6% | Mar 24, 2020 | An issue was discovered on Samsung mobile devices with N(7.X) and O(8.X) (Exynos 7570, 7870, 7880, 7885, 8890, 8895, and... |
Check if your code is affected by 2019 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now