2019 CVE Vulnerabilities
17,623 CVEs published in 2019.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2019-17415 | CRITICAL | 9.8 | 4.4% | Oct 9, 2019 | A Structured Exception Handler (SEH) based buffer overflow in File Sharing Wizard 1.5.0 26-8-2008 allows remote unauthen... |
| CVE-2019-17414 | HIGH | 7.5 | 1.8% | Oct 9, 2019 | tinylcy Vino through 2017-12-15 allows remote attackers to cause a denial of service ("vn_get_string error: Resource tem... |
| CVE-2019-17366 | HIGH | 8.8 | 1.3% | Oct 9, 2019 | Citrix Application Delivery Management (ADM) 12.1 before build 54.13 has Incorrect Access Control. |
| CVE-2019-17365 | HIGH | 7.8 | 0.4% | Oct 9, 2019 | Nix through 2.3 allows local users to gain access to an arbitrary user's account because the parent directory of the use... |
| CVE-2019-17109 | MEDIUM | 6.5 | 2.8% | Oct 9, 2019 | Koji through 1.18.0 allows remote Directory Traversal, with resultant Privilege Escalation. |
| CVE-2019-5053 | HIGH | 7.8 | 1.3% | Oct 9, 2019 | An exploitable use-after-free vulnerability exists in the Length parsing function of NitroPDF. A specially crafted PDF c... |
| CVE-2019-5050 | HIGH | 7.8 | 2.6% | Oct 9, 2019 | A specifically crafted PDF file can lead to a heap corruption when opened in NitroPDF 12.12.1.522. With careful memory m... |
| CVE-2019-5048 | HIGH | 7.8 | 2.3% | Oct 9, 2019 | A specifically crafted PDF file can lead to a heap corruption when opened in NitroPDF 12.12.1.522. With careful memory m... |
| CVE-2019-5047 | HIGH | 7.8 | 1.3% | Oct 9, 2019 | An exploitable Use After Free vulnerability exists in the CharProcs parsing functionality of NitroPDF. A specially craft... |
| CVE-2019-5046 | HIGH | 7.8 | 2.3% | Oct 9, 2019 | A specifically crafted jpeg2000 file embedded in a PDF file can lead to a heap corruption when opening a PDF document in... |
| CVE-2019-5045 | HIGH | 7.8 | 2.3% | Oct 9, 2019 | A specifically crafted jpeg2000 file embedded in a PDF file can lead to a heap corruption when opening a PDF document in... |
| CVE-2019-1584 | CRITICAL | 9.8 | 2.8% | Oct 9, 2019 | A security vulnerability exists in Zingbox Inspector version 1.293 and earlier, that allows for remote code execution if... |
| CVE-2019-15023 | HIGH | 7.5 | 0.8% | Oct 9, 2019 | A security vulnerability exists in Zingbox Inspector versions 1.294 and earlier, that results in passwords for 3rd party... |
| CVE-2019-15022 | HIGH | 7.5 | 1.1% | Oct 9, 2019 | A security vulnerability exists in Zingbox Inspector versions 1.294 and earlier, that allows for the Inspector to be sus... |
| CVE-2019-15021 | MEDIUM | 5.3 | 1.0% | Oct 9, 2019 | A security vulnerability exists in the Zingbox Inspector versions 1.294 and earlier, that can allow an attacker to easil... |
| CVE-2019-15020 | CRITICAL | 9.8 | 0.9% | Oct 9, 2019 | A security vulnerability exists in the Zingbox Inspector versions 1.293 and earlier, that could allow an attacker to sup... |
| CVE-2019-15019 | CRITICAL | 9.8 | 1.5% | Oct 9, 2019 | A security vulnerability exists in the Zingbox Inspector versions 1.294 and earlier, that could allow an attacker to sup... |
| CVE-2019-15018 | HIGH | 7.5 | 1.2% | Oct 9, 2019 | A security vulnerability exists in the Zingbox Inspector versions 1.280 and earlier, where authentication is not require... |
| CVE-2019-15017 | HIGH | 8.4 | 0.4% | Oct 9, 2019 | The SSH service is enabled on the Zingbox Inspector versions 1.294 and earlier, exposing SSH to the local network. When ... |
| CVE-2019-15016 | HIGH | 8.8 | 1.2% | Oct 9, 2019 | An SQL injection vulnerability exists in the management interface of Zingbox Inspector versions 1.288 and earlier, that ... |
| CVE-2019-15015 | HIGH | 8.4 | 0.4% | Oct 9, 2019 | In the Zingbox Inspector, versions 1.294 and earlier, hardcoded credentials for root and inspector user accounts are pre... |
| CVE-2019-15014 | HIGH | 8.8 | 2.3% | Oct 9, 2019 | A command injection vulnerability exists in the Zingbox Inspector versions 1.286 and earlier, that allows for an authent... |
| CVE-2019-9535 | CRITICAL | 9.8 | 2.5% | Oct 9, 2019 | A vulnerability exists in the way that iTerm2 integrates with tmux's control mode, which may allow an attacker to execut... |
| CVE-2019-3765 | HIGH | 8.1 | 1.1% | Oct 9, 2019 | Dell EMC Avamar Server versions 7.4.1, 7.5.0, 7.5.1, 18.2 and 19.1 and Dell EMC Integrated Data Protection Appliance (ID... |
| CVE-2019-17112 | MEDIUM | 4.3 | 2.1% | Oct 9, 2019 | An issue was discovered in Zoho ManageEngine DataSecurity Plus before 5.0.1 5012. An exposed service allows a basic user... |
Check if your code is affected by 2019 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now