2019 CVE Vulnerabilities
17,623 CVEs published in 2019.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2019-11245 | MEDIUM | 4.9 | 0.6% | Aug 29, 2019 | In kubelet v1.13.6 and v1.14.2, containers for pods that do not specify an explicit runAsUser attempt to run as uid 0 (r... |
| CVE-2019-11064 | CRITICAL | 9.8 | 1.9% | Aug 29, 2019 | A vulnerability of remote credential disclosure was discovered in Advan VD-1 firmware versions up to 230. An attacker ca... |
| CVE-2019-11063 | CRITICAL | 10 | 4.5% | Aug 29, 2019 | A broken access control vulnerability in SmartHome app (Android versions up to 3.0.42_190515, ios versions up to 2.0.22)... |
| CVE-2019-11061 | CRITICAL | 10 | 4.0% | Aug 29, 2019 | A broken access control vulnerability in HG100 firmware versions up to 4.00.06 allows an attacker in the same local area... |
| CVE-2019-11060 | HIGH | 7.5 | 3.0% | Aug 29, 2019 | The web api server on Port 8080 of ASUS HG100 firmware up to 1.05.12, which is vulnerable to Slowloris HTTP Denial of Se... |
| CVE-2019-10724 | — | — | 1.2% | Aug 29, 2019 | There is a vulnerability with the Dolby DAX2 API system services in which a low-privileged user can terminate arbitrary ... |
| CVE-2019-9933 | — | — | 1.5% | Aug 28, 2019 | Various Lexmark products have a Buffer Overflow (issue 3 of 3). |
| CVE-2019-9932 | — | — | 1.5% | Aug 28, 2019 | Various Lexmark products have a Buffer Overflow (issue 2 of 3). |
| CVE-2019-9931 | — | — | 1.1% | Aug 28, 2019 | Various Lexmark printers contain a denial of service vulnerability in the SNMP service that can be exploited to crash th... |
| CVE-2019-9930 | — | — | 1.5% | Aug 28, 2019 | Various Lexmark products have an Integer Overflow. |
| CVE-2019-10059 | — | — | 0.9% | Aug 28, 2019 | The legacy finger service (TCP port 79) is enabled by default on various older Lexmark devices. |
| CVE-2019-10057 | — | — | 0.4% | Aug 28, 2019 | Various Lexmark products have CSRF. |
| CVE-2019-15753 | — | — | 2.6% | Aug 28, 2019 | In OpenStack os-vif 1.15.x before 1.15.2, and 1.16.0, a hard-coded MAC aging time of 0 disables MAC learning in linuxbri... |
| CVE-2019-15752 | HIGH | 7.8 | 29.6% | Aug 28, 2019 | Docker Desktop Community Edition before 2.1.0.1 allows local users to gain privileges by placing a Trojan horse docker-c... |
| CVE-2019-10056 | — | — | 1.4% | Aug 28, 2019 | An issue was discovered in Suricata 4.1.3. The code mishandles the case of sending a network packet with the right type,... |
| CVE-2019-10055 | — | — | 1.4% | Aug 28, 2019 | An issue was discovered in Suricata 4.1.3. The function ftp_pasv_response lacks a check for the length of part1 and part... |
| CVE-2019-10054 | — | — | 1.4% | Aug 28, 2019 | An issue was discovered in Suricata 4.1.3. The function process_reply_record_v3 lacks a check for the length of reply.da... |
| CVE-2019-14694 | — | — | 0.4% | Aug 28, 2019 | A use-after-free flaw in the sandbox container implemented in cmdguard.sys in Comodo Antivirus 12.0.0.6870 can be trigge... |
| CVE-2019-10052 | — | — | 2.1% | Aug 28, 2019 | An issue was discovered in Suricata 4.1.3. If the network packet does not have the right length, the parser tries to acc... |
| CVE-2019-10051 | — | — | 2.1% | Aug 28, 2019 | An issue was discovered in Suricata 4.1.3. If the function filetracker_newchunk encounters an unsafe "Some(sfcm) => { ft... |
| CVE-2019-1965 | HIGH | 7.7 | 1.5% | Aug 28, 2019 | A vulnerability in the Virtual Shell (VSH) session management for Cisco NX-OS Software could allow an authenticated, rem... |
| CVE-2019-1964 | HIGH | 8.6 | 1.9% | Aug 28, 2019 | A vulnerability in the IPv6 traffic processing of Cisco NX-OS Software could allow an unauthenticated, remote attacker t... |
| CVE-2019-1963 | HIGH | 7.7 | 1.6% | Aug 28, 2019 | A vulnerability in the Simple Network Management Protocol (SNMP) input packet processor of Cisco FXOS Software and Cisco... |
| CVE-2019-1962 | HIGH | 8.6 | 1.9% | Aug 28, 2019 | A vulnerability in the Cisco Fabric Services component of Cisco NX-OS Software could allow an unauthenticated, remote at... |
| CVE-2019-12643 | CRITICAL | 10 | 5.3% | Aug 28, 2019 | A vulnerability in the Cisco REST API virtual service container for Cisco IOS XE Software could allow an unauthenticated... |
Check if your code is affected by 2019 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now