2019 CVE Vulnerabilities

17,619 CVEs published in 2019.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2019-18426HIGH8.2A vulnerability in WhatsApp Desktop versions prior to 0.3.9309 when paired with WhatsApp for iPhone versions prior to 2....
CVE-2019-17584HIGH7.5The Meinberg SyncBox/PTP/PTPv2 devices have default SSH keys which allow attackers to get root access to the devices. Al...
CVE-2019-18932HIGH7log.c in Squid Analysis Report Generator (sarg) through 2.3.11 allows local privilege escalation. By default, it uses a ...
CVE-2019-3864HIGH8.8A vulnerability was discovered in all quay-2 versions before quay-3.0.0, in the Quay web GUI where POST requests include...
CVE-2019-14768HIGH8.8An Arbitrary File Upload issue in the file browser of DIMO YellowBox CRM before 6.3.4 allows a standard authenticated us...
CVE-2019-14767HIGH7.5In DIMO YellowBox CRM before 6.3.4, Path Traversal in images/Apparence (dossier=../) and servletrecuperefichier (documen...
CVE-2019-14765HIGH8.8Incorrect Access Control in AfficheExplorateurParam() in DIMO YellowBox CRM before 6.3.4 allows a standard authenticated...
CVE-2019-2267HIGH7.8Locked regions may be modified through other interfaces in secure boot loader image due to improper access control. in S...
CVE-2019-14036HIGH7.8Possible buffer overflow issue in error processing due to improper validation of array index value in Snapdragon Auto, S...
CVE-2019-14034HIGH7.8Use after free while processing eeprom query as there is a chance to not unlock mutex after error occurs in Snapdragon A...
CVE-2019-14024HIGH7.8Possible stack-use-after-scope issue in NFC usecase for card emulation in Snapdragon Auto, Snapdragon Industrial IOT, Sn...
CVE-2019-14023HIGH7.8String format issue will occur while processing HLOS data as there is no user input validation to ensure inputs are prop...
CVE-2019-14010HIGH7.5The device may enter into error state when some tool or application gets failure at 1st buffer map all and performs 2nd ...
CVE-2019-14008HIGH7.5Possible null pointer dereference issue in location assistance data processing due to missing null check on resources be...
CVE-2019-14003HIGH7.5Null pointer exception can happen while parsing invalid MKV clip where cue information is parsed before segment informat...
CVE-2019-10606HIGH7.8Out-of-bound access will occur in USB driver due to lack of check to validate the frame size passed by user in Snapdrago...
CVE-2019-10602HIGH7.8Potential use-after-free heap error during Validate/Present calls on display HW composer in Snapdragon Auto, Snapdragon ...
CVE-2019-10585HIGH7.8Possible integer overflow happens when mmap find function will increment refcount every time when it invokes and can lea...
CVE-2019-10583HIGH7.8Use after free issue occurs when camera access sensors data through direct report mode in Snapdragon Auto, Snapdragon Co...
CVE-2019-10582HIGH7.8Use after free issue due to using of invalidated iterator to delete an object in sensors HAL in Snapdragon Auto, Snapdra...
CVE-2019-10578HIGH7.5Null pointer dereference can occur while parsing the clip which is nonstandard in Snapdragon Auto, Snapdragon Compute, S...
CVE-2019-10558HIGH7.8While transferring data from APPS to DSP, Out of bound in FastRPC HLOS Driver due to the data buffer which can be contro...
CVE-2019-10548HIGH7.8While trying to obtain datad ipc handle during DPL initialization, Heap use-after-free issue can occur if modem SSR occu...
CVE-2019-20385HIGH8.8The CSV upload feature in /supervisor/procesa_carga.php on Logaritmo Aware CallManager 2012 devices allows upload of .ph...
CVE-2019-20357HIGH7.8A Persistent Arbitrary Code Execution vulnerability exists in the Trend Micro Security 2020 (v160 and 2019 (v15) consume...

Check if your code is affected by 2019 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now