2019 CVE Vulnerabilities

17,623 CVEs published in 2019.

CVE IDSeverityCVSSDescription
CVE-2019-17415CRITICAL9.8A Structured Exception Handler (SEH) based buffer overflow in File Sharing Wizard 1.5.0 26-8-2008 allows remote unauthen...
CVE-2019-17414HIGH7.5tinylcy Vino through 2017-12-15 allows remote attackers to cause a denial of service ("vn_get_string error: Resource tem...
CVE-2019-17366HIGH8.8Citrix Application Delivery Management (ADM) 12.1 before build 54.13 has Incorrect Access Control.
CVE-2019-17365HIGH7.8Nix through 2.3 allows local users to gain access to an arbitrary user's account because the parent directory of the use...
CVE-2019-17109MEDIUM6.5Koji through 1.18.0 allows remote Directory Traversal, with resultant Privilege Escalation.
CVE-2019-5053HIGH7.8An exploitable use-after-free vulnerability exists in the Length parsing function of NitroPDF. A specially crafted PDF c...
CVE-2019-5050HIGH7.8A specifically crafted PDF file can lead to a heap corruption when opened in NitroPDF 12.12.1.522. With careful memory m...
CVE-2019-5048HIGH7.8A specifically crafted PDF file can lead to a heap corruption when opened in NitroPDF 12.12.1.522. With careful memory m...
CVE-2019-5047HIGH7.8An exploitable Use After Free vulnerability exists in the CharProcs parsing functionality of NitroPDF. A specially craft...
CVE-2019-5046HIGH7.8A specifically crafted jpeg2000 file embedded in a PDF file can lead to a heap corruption when opening a PDF document in...
CVE-2019-5045HIGH7.8A specifically crafted jpeg2000 file embedded in a PDF file can lead to a heap corruption when opening a PDF document in...
CVE-2019-1584CRITICAL9.8A security vulnerability exists in Zingbox Inspector version 1.293 and earlier, that allows for remote code execution if...
CVE-2019-15023HIGH7.5A security vulnerability exists in Zingbox Inspector versions 1.294 and earlier, that results in passwords for 3rd party...
CVE-2019-15022HIGH7.5A security vulnerability exists in Zingbox Inspector versions 1.294 and earlier, that allows for the Inspector to be sus...
CVE-2019-15021MEDIUM5.3A security vulnerability exists in the Zingbox Inspector versions 1.294 and earlier, that can allow an attacker to easil...
CVE-2019-15020CRITICAL9.8A security vulnerability exists in the Zingbox Inspector versions 1.293 and earlier, that could allow an attacker to sup...
CVE-2019-15019CRITICAL9.8A security vulnerability exists in the Zingbox Inspector versions 1.294 and earlier, that could allow an attacker to sup...
CVE-2019-15018HIGH7.5A security vulnerability exists in the Zingbox Inspector versions 1.280 and earlier, where authentication is not require...
CVE-2019-15017HIGH8.4The SSH service is enabled on the Zingbox Inspector versions 1.294 and earlier, exposing SSH to the local network. When ...
CVE-2019-15016HIGH8.8An SQL injection vulnerability exists in the management interface of Zingbox Inspector versions 1.288 and earlier, that ...
CVE-2019-15015HIGH8.4In the Zingbox Inspector, versions 1.294 and earlier, hardcoded credentials for root and inspector user accounts are pre...
CVE-2019-15014HIGH8.8A command injection vulnerability exists in the Zingbox Inspector versions 1.286 and earlier, that allows for an authent...
CVE-2019-9535CRITICAL9.8A vulnerability exists in the way that iTerm2 integrates with tmux's control mode, which may allow an attacker to execut...
CVE-2019-3765HIGH8.1Dell EMC Avamar Server versions 7.4.1, 7.5.0, 7.5.1, 18.2 and 19.1 and Dell EMC Integrated Data Protection Appliance (ID...
CVE-2019-17112MEDIUM4.3An issue was discovered in Zoho ManageEngine DataSecurity Plus before 5.0.1 5012. An exposed service allows a basic user...

Check if your code is affected by 2019 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now