2019 CVE Vulnerabilities

17,619 CVEs published in 2019.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2019-20061HIGH7.5The user-introduction email in MFScripts YetiShare v3.5.2 through v4.5.4 may leak the (system-picked) password if this e...
CVE-2019-20060HIGH7.5MFScripts YetiShare v3.5.2 through v4.5.4 places sensitive information in the Referer header. If this leaks, then third ...
CVE-2019-20059HIGH8.8payment_manage.ajax.php and various *_manage.ajax.php in MFScripts YetiShare 3.5.2 through 4.5.4 directly insert values ...
CVE-2019-11484HIGH7.8Kevin Backhouse discovered an integer overflow in bson_ensure_space, as used in whoopsie.
CVE-2019-11481HIGH7.8Kevin Backhouse discovered that apport would read a user-supplied configuration file with elevated privileges. By replac...
CVE-2019-17136HIGH7.8This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit PhantomPDF 9.5.0...
CVE-2019-17135HIGH7.8This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit PhantomPDF 9.5.0...
CVE-2019-13334HIGH7.8This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit PhantomPDF 9.5.0...
CVE-2019-13333HIGH7.8This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit PhantomPDF 9.5.0...
CVE-2019-19356HIGH7.5Netis WF2419 is vulnerable to authenticated Remote Code Execution (RCE) as root through the router Web management page. ...
CVE-2019-18988HIGH7TeamViewer Desktop through 14.7.1965 allows a bypass of remote-login access control because the same key is used for dif...
CVE-2019-16155HIGH7.1A privilege escalation vulnerability in FortiClient for Linux 6.2.1 and below may allow a user with low privilege to ove...
CVE-2019-15604HIGH7.5Improper Certificate Validation in Node.js 10, 12, and 13 causes the process to abort when sending a crafted X.509 certi...
CVE-2019-14088HIGH7.8Possible use after free issue while CRM is accessing the link pointer from device private data due to lack of resource p...
CVE-2019-14060HIGH7.8Uninitialized stack data gets used If memory is not allocated for blob or if the allocated blob is less than the struct ...
CVE-2019-14055HIGH7.8Possibility of use-after-free and double free because of not marking buffer as NULL after freeing can lead to dangling p...
CVE-2019-14051HIGH7.8Subsequent additions performed during Module loading while allocating the memory would lead to integer overflow and then...
CVE-2019-14049HIGH7.8Stage-2 fault will occur while writing to an ION system allocation which has been assigned to non-HLOS memory which is n...
CVE-2019-14046HIGH7.8Out of bound access while allocating memory for an array in camera due to improper validation of elements parameters in ...
CVE-2019-14044HIGH7.8Out of bound access due to access of uninitialized memory segment in an array of pointers while normal camera open close...
CVE-2019-14041HIGH7.8During listener modified response processing, a buffer overrun occurs due to lack of buffer size verification when updat...
CVE-2019-14040HIGH7.8Using memory after being freed in qsee due to wrong implementation can lead to unexpected behavior such as execution of ...
CVE-2019-14002HIGH7.8APKs without proper permission may bind to CallEnhancementService and can lead to unauthorized access to call status in ...
CVE-2019-10567HIGH7.8There is a way to deceive the GPU kernel driver into thinking there is room in the GPU ringbuffer and overwriting existi...
CVE-2019-15711HIGH7.8A privilege escalation vulnerability in FortiClient for Linux 6.2.1 and below may allow an user with low privilege to ru...

Check if your code is affected by 2019 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now