2019 CVE Vulnerabilities

17,624 CVEs published in 2019.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2019-13321HIGH8This vulnerability allows network adjacent attackers to execute arbitrary code on affected installations of Xiaomi Brows...
CVE-2019-19664HIGH7.1A CSRF vulnerability exists in the Web Settings of Web File Manager in Rumpus FTP 8.2.9.1. Exploitation of this vulnerab...
CVE-2019-19659HIGH8.8A CSRF vulnerability exists in the Web File Manager's Edit Accounts functionality of Rumpus FTP Server 8.2.9.1. By explo...
CVE-2019-20061HIGH7.5The user-introduction email in MFScripts YetiShare v3.5.2 through v4.5.4 may leak the (system-picked) password if this e...
CVE-2019-20060HIGH7.5MFScripts YetiShare v3.5.2 through v4.5.4 places sensitive information in the Referer header. If this leaks, then third ...
CVE-2019-20059HIGH8.8payment_manage.ajax.php and various *_manage.ajax.php in MFScripts YetiShare 3.5.2 through 4.5.4 directly insert values ...
CVE-2019-11484HIGH7.8Kevin Backhouse discovered an integer overflow in bson_ensure_space, as used in whoopsie.
CVE-2019-11481HIGH7.8Kevin Backhouse discovered that apport would read a user-supplied configuration file with elevated privileges. By replac...
CVE-2019-17136HIGH7.8This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit PhantomPDF 9.5.0...
CVE-2019-17135HIGH7.8This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit PhantomPDF 9.5.0...
CVE-2019-13334HIGH7.8This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit PhantomPDF 9.5.0...
CVE-2019-13333HIGH7.8This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit PhantomPDF 9.5.0...
CVE-2019-19356HIGH7.5Netis WF2419 is vulnerable to authenticated Remote Code Execution (RCE) as root through the router Web management page. ...
CVE-2019-18988HIGH7TeamViewer Desktop through 14.7.1965 allows a bypass of remote-login access control because the same key is used for dif...
CVE-2019-16155HIGH7.1A privilege escalation vulnerability in FortiClient for Linux 6.2.1 and below may allow a user with low privilege to ove...
CVE-2019-15604HIGH7.5Improper Certificate Validation in Node.js 10, 12, and 13 causes the process to abort when sending a crafted X.509 certi...
CVE-2019-14088HIGH7.8Possible use after free issue while CRM is accessing the link pointer from device private data due to lack of resource p...
CVE-2019-14060HIGH7.8Uninitialized stack data gets used If memory is not allocated for blob or if the allocated blob is less than the struct ...
CVE-2019-14055HIGH7.8Possibility of use-after-free and double free because of not marking buffer as NULL after freeing can lead to dangling p...
CVE-2019-14051HIGH7.8Subsequent additions performed during Module loading while allocating the memory would lead to integer overflow and then...
CVE-2019-14049HIGH7.8Stage-2 fault will occur while writing to an ION system allocation which has been assigned to non-HLOS memory which is n...
CVE-2019-14046HIGH7.8Out of bound access while allocating memory for an array in camera due to improper validation of elements parameters in ...
CVE-2019-14044HIGH7.8Out of bound access due to access of uninitialized memory segment in an array of pointers while normal camera open close...
CVE-2019-14041HIGH7.8During listener modified response processing, a buffer overrun occurs due to lack of buffer size verification when updat...
CVE-2019-14040HIGH7.8Using memory after being freed in qsee due to wrong implementation can lead to unexpected behavior such as execution of ...

Check if your code is affected by 2019 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now