2019 CVE Vulnerabilities
17,619 CVEs published in 2019.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2019-20061 | HIGH | 7.5 | 0.9% | Feb 10, 2020 | The user-introduction email in MFScripts YetiShare v3.5.2 through v4.5.4 may leak the (system-picked) password if this e... |
| CVE-2019-20060 | HIGH | 7.5 | 1.4% | Feb 10, 2020 | MFScripts YetiShare v3.5.2 through v4.5.4 places sensitive information in the Referer header. If this leaks, then third ... |
| CVE-2019-20059 | HIGH | 8.8 | 0.9% | Feb 10, 2020 | payment_manage.ajax.php and various *_manage.ajax.php in MFScripts YetiShare 3.5.2 through 4.5.4 directly insert values ... |
| CVE-2019-11484 | HIGH | 7.8 | 0.4% | Feb 8, 2020 | Kevin Backhouse discovered an integer overflow in bson_ensure_space, as used in whoopsie. |
| CVE-2019-11481 | HIGH | 7.8 | 0.4% | Feb 8, 2020 | Kevin Backhouse discovered that apport would read a user-supplied configuration file with elevated privileges. By replac... |
| CVE-2019-17136 | HIGH | 7.8 | 5.5% | Feb 8, 2020 | This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit PhantomPDF 9.5.0... |
| CVE-2019-17135 | HIGH | 7.8 | 5.2% | Feb 8, 2020 | This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit PhantomPDF 9.5.0... |
| CVE-2019-13334 | HIGH | 7.8 | 6.8% | Feb 8, 2020 | This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit PhantomPDF 9.5.0... |
| CVE-2019-13333 | HIGH | 7.8 | 6.8% | Feb 8, 2020 | This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit PhantomPDF 9.5.0... |
| CVE-2019-19356 | HIGH | 7.5 | 28.0% | Feb 7, 2020 | Netis WF2419 is vulnerable to authenticated Remote Code Execution (RCE) as root through the router Web management page. ... |
| CVE-2019-18988 | HIGH | 7 | 4.7% | Feb 7, 2020 | TeamViewer Desktop through 14.7.1965 allows a bypass of remote-login access control because the same key is used for dif... |
| CVE-2019-16155 | HIGH | 7.1 | 0.4% | Feb 7, 2020 | A privilege escalation vulnerability in FortiClient for Linux 6.2.1 and below may allow a user with low privilege to ove... |
| CVE-2019-15604 | HIGH | 7.5 | 20.5% | Feb 7, 2020 | Improper Certificate Validation in Node.js 10, 12, and 13 causes the process to abort when sending a crafted X.509 certi... |
| CVE-2019-14088 | HIGH | 7.8 | 0.3% | Feb 7, 2020 | Possible use after free issue while CRM is accessing the link pointer from device private data due to lack of resource p... |
| CVE-2019-14060 | HIGH | 7.8 | 0.2% | Feb 7, 2020 | Uninitialized stack data gets used If memory is not allocated for blob or if the allocated blob is less than the struct ... |
| CVE-2019-14055 | HIGH | 7.8 | 0.2% | Feb 7, 2020 | Possibility of use-after-free and double free because of not marking buffer as NULL after freeing can lead to dangling p... |
| CVE-2019-14051 | HIGH | 7.8 | 0.2% | Feb 7, 2020 | Subsequent additions performed during Module loading while allocating the memory would lead to integer overflow and then... |
| CVE-2019-14049 | HIGH | 7.8 | 0.2% | Feb 7, 2020 | Stage-2 fault will occur while writing to an ION system allocation which has been assigned to non-HLOS memory which is n... |
| CVE-2019-14046 | HIGH | 7.8 | 0.2% | Feb 7, 2020 | Out of bound access while allocating memory for an array in camera due to improper validation of elements parameters in ... |
| CVE-2019-14044 | HIGH | 7.8 | 0.2% | Feb 7, 2020 | Out of bound access due to access of uninitialized memory segment in an array of pointers while normal camera open close... |
| CVE-2019-14041 | HIGH | 7.8 | 0.4% | Feb 7, 2020 | During listener modified response processing, a buffer overrun occurs due to lack of buffer size verification when updat... |
| CVE-2019-14040 | HIGH | 7.8 | 0.5% | Feb 7, 2020 | Using memory after being freed in qsee due to wrong implementation can lead to unexpected behavior such as execution of ... |
| CVE-2019-14002 | HIGH | 7.8 | 0.2% | Feb 7, 2020 | APKs without proper permission may bind to CallEnhancementService and can lead to unauthorized access to call status in ... |
| CVE-2019-10567 | HIGH | 7.8 | 0.2% | Feb 7, 2020 | There is a way to deceive the GPU kernel driver into thinking there is room in the GPU ringbuffer and overwriting existi... |
| CVE-2019-15711 | HIGH | 7.8 | 0.5% | Feb 6, 2020 | A privilege escalation vulnerability in FortiClient for Linux 6.2.1 and below may allow an user with low privilege to ru... |
Check if your code is affected by 2019 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now