2019 CVE Vulnerabilities
17,623 CVEs published in 2019.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2019-17246 | HIGH | 7.8 | 1.5% | Oct 8, 2019 | IrfanView 4.53 allows a User Mode Write AV starting at WSQ!ReadWSQ+0x000000000000258c. |
| CVE-2019-17245 | HIGH | 7.8 | 0.6% | Oct 8, 2019 | IrfanView 4.53 allows a User Mode Write AV starting at WSQ!ReadWSQ+0x0000000000004359. |
| CVE-2019-17244 | HIGH | 7.8 | 1.5% | Oct 8, 2019 | IrfanView 4.53 allows Data from a Faulting Address to control Code Flow starting at JPEG_LS+0x0000000000001d8a. |
| CVE-2019-17243 | HIGH | 7.8 | 1.5% | Oct 8, 2019 | IrfanView 4.53 allows Data from a Faulting Address to control Code Flow starting at JPEG_LS+0x0000000000003155. |
| CVE-2019-17242 | HIGH | 7.8 | 0.6% | Oct 8, 2019 | IrfanView 4.53 allows a User Mode Write AV starting at WSQ!ReadWSQ+0x000000000000966f. |
| CVE-2019-17241 | HIGH | 7.8 | 0.6% | Oct 8, 2019 | IrfanView 4.53 allows a User Mode Write AV starting at WSQ!ReadWSQ+0x000000000000d563. |
| CVE-2019-17349 | MEDIUM | 5.5 | 0.4% | Oct 8, 2019 | An issue was discovered in Xen through 4.12.x allowing Arm domU attackers to cause a denial of service (infinite loop) i... |
| CVE-2019-17348 | MEDIUM | 6.5 | 0.3% | Oct 8, 2019 | An issue was discovered in Xen through 4.11.x allowing x86 PV guest OS users to cause a denial of service because of an ... |
| CVE-2019-17347 | HIGH | 7.8 | 0.4% | Oct 8, 2019 | An issue was discovered in Xen through 4.11.x allowing x86 PV guest OS users to cause a denial of service or gain privil... |
| CVE-2019-17346 | HIGH | 8.8 | 0.3% | Oct 8, 2019 | An issue was discovered in Xen through 4.11.x allowing x86 PV guest OS users to cause a denial of service or gain privil... |
| CVE-2019-17345 | MEDIUM | 6.5 | 0.4% | Oct 8, 2019 | An issue was discovered in Xen 4.8.x through 4.11.x allowing x86 PV guest OS users to cause a denial of service because ... |
| CVE-2019-17344 | MEDIUM | 6.5 | 0.4% | Oct 8, 2019 | An issue was discovered in Xen through 4.11.x allowing x86 PV guest OS users to cause a denial of service by leveraging ... |
| CVE-2019-17343 | MEDIUM | 6.8 | 0.3% | Oct 8, 2019 | An issue was discovered in Xen through 4.11.x allowing x86 PV guest OS users to cause a denial of service or gain privil... |
| CVE-2019-17342 | HIGH | 7 | 0.3% | Oct 8, 2019 | An issue was discovered in Xen through 4.11.x allowing x86 PV guest OS users to cause a denial of service or gain privil... |
| CVE-2019-17341 | HIGH | 7.8 | 0.3% | Oct 8, 2019 | An issue was discovered in Xen through 4.11.x allowing x86 PV guest OS users to cause a denial of service or gain privil... |
| CVE-2019-17340 | HIGH | 8.8 | 0.4% | Oct 8, 2019 | An issue was discovered in Xen through 4.11.x allowing x86 guest OS users to cause a denial of service or gain privilege... |
| CVE-2019-17351 | MEDIUM | 6.5 | 0.4% | Oct 8, 2019 | An issue was discovered in drivers/xen/balloon.c in the Linux kernel before 5.2.3, as used in Xen through 4.12.x, allowi... |
| CVE-2019-17350 | MEDIUM | 5.5 | 0.4% | Oct 8, 2019 | An issue was discovered in Xen through 4.12.x allowing Arm domU attackers to cause a denial of service (infinite loop) i... |
| CVE-2019-17233 | MEDIUM | 6.1 | 1.8% | Oct 7, 2019 | Functions/EWD_UFAQ_Import.php in the ultimate-faqs plugin through 1.8.24 for WordPress allows HTML content injection. |
| CVE-2019-17232 | HIGH | 7.5 | 3.5% | Oct 7, 2019 | Functions/EWD_UFAQ_Import.php in the ultimate-faqs plugin through 1.8.24 for WordPress allows unauthenticated options im... |
| CVE-2019-17239 | MEDIUM | 6.1 | 0.9% | Oct 7, 2019 | includes/settings/class-alg-download-plugins-settings.php in the download-plugins-dashboard plugin through 1.5.0 for Wor... |
| CVE-2019-16913 | HIGH | 7.8 | 0.4% | Oct 7, 2019 | PC Protect Antivirus v4.14.31 installs by default to %PROGRAMFILES(X86)%\PCProtect with very weak folder permissions, gr... |
| CVE-2019-13120 | HIGH | 7.5 | 1.2% | Oct 7, 2019 | Amazon FreeRTOS up to and including v1.4.8 lacks length checking in prvProcessReceivedPublish, resulting in untargetable... |
| CVE-2019-3745 | HIGH | 7.3 | 0.3% | Oct 7, 2019 | The vulnerability is limited to the installers of Dell Encryption Enterprise versions prior to 10.4.0 and Dell Endpoint ... |
| CVE-2019-17314 | HIGH | 7.2 | 1.9% | Oct 7, 2019 | SugarCRM before 8.0.4 and 9.x before 9.0.2 allows directory traversal in the Configurator module by an Admin user. |
Check if your code is affected by 2019 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now