2019 CVE Vulnerabilities
17,619 CVEs published in 2019.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2019-20183 | HIGH | 7.2 | 6.7% | Jan 9, 2020 | uploadimage.php in Employee Records System 1.0 allows upload and execution of arbitrary PHP code because file-extension ... |
| CVE-2019-20179 | HIGH | 8.8 | 1.0% | Jan 9, 2020 | SOPlanning 1.45 has SQL injection via the user_list.php "by" parameter. |
| CVE-2019-6319 | HIGH | 8.1 | 0.6% | Jan 9, 2020 | HP DeskJet 3630 All-in-One Printers models F5S43A - F5S57A, K4T93A - K4T99C, K4U00B - K4U03B, and V3F21A - V3F22A (firmw... |
| CVE-2019-6320 | HIGH | 8.1 | 0.6% | Jan 9, 2020 | Certain HP DeskJet 3630 All-in-One Printers models F5S43A - F5S57A, K4T93A - K4T99C, K4U00B - K4U03B, and V3F21A - V3F22... |
| CVE-2019-14920 | HIGH | 8.8 | 2.2% | Jan 9, 2020 | Billion Smart Energy Router SG600R2 Firmware v3.02.rc6 allows an authenticated attacker to gain root execution privilege... |
| CVE-2019-14919 | HIGH | 7.8 | 1.5% | Jan 9, 2020 | An exposed Telnet Service on the Billion Smart Energy Router SG600R2 with firmware v3.02.rc6 allows a local network atta... |
| CVE-2019-20224 | HIGH | 8.8 | 50.6% | Jan 9, 2020 | netflow_get_stats in functions_netflow.php in Pandora FMS 7.0NG allows remote authenticated users to execute arbitrary O... |
| CVE-2019-19494 | HIGH | 8.8 | 22.9% | Jan 9, 2020 | Broadcom based cable modems across multiple vendors are vulnerable to a buffer overflow, which allows a remote attacker ... |
| CVE-2019-17025 | HIGH | 8.8 | 1.3% | Jan 8, 2020 | Mozilla developers reported memory safety bugs present in Firefox 71. Some of these bugs showed evidence of memory corru... |
| CVE-2019-17024 | HIGH | 8.8 | 2.5% | Jan 8, 2020 | Mozilla developers reported memory safety bugs present in Firefox 71 and Firefox ESR 68.3. Some of these bugs showed evi... |
| CVE-2019-17019 | HIGH | 8.8 | 1.0% | Jan 8, 2020 | When Python was installed on Windows, a python file being served with the MIME type of text/plain could be executed by P... |
| CVE-2019-17017 | HIGH | 8.8 | 2.5% | Jan 8, 2020 | Due to a missing case handling object types, a type confusion vulnerability could occur, resulting in a crash. We presum... |
| CVE-2019-17015 | HIGH | 8.8 | 1.8% | Jan 8, 2020 | During the initialization of a new content process, a pointer offset can be manipulated leading to memory corruption and... |
| CVE-2019-17014 | HIGH | 7.4 | 1.1% | Jan 8, 2020 | If an image had not loaded correctly (such as when it is not actually an image), it could be dragged and dropped cross-d... |
| CVE-2019-17013 | HIGH | 8.8 | 0.8% | Jan 8, 2020 | Mozilla developers reported memory safety bugs present in Firefox 70. Some of these bugs showed evidence of memory corru... |
| CVE-2019-17012 | HIGH | 8.8 | 2.0% | Jan 8, 2020 | Mozilla developers reported memory safety bugs present in Firefox 70 and Firefox ESR 68.2. Some of these bugs showed evi... |
| CVE-2019-17011 | HIGH | 7.5 | 1.5% | Jan 8, 2020 | Under certain conditions, when retrieving a document from a DocShell in the antitracking code, a race condition could ca... |
| CVE-2019-17010 | HIGH | 7.5 | 1.6% | Jan 8, 2020 | Under certain conditions, when checking the Resist Fingerprinting preference during device orientation checks, a race co... |
| CVE-2019-17009 | HIGH | 7.8 | 0.3% | Jan 8, 2020 | When running, the updater service wrote status and log files to an unrestricted location; potentially allowing an unpriv... |
| CVE-2019-17008 | HIGH | 8.8 | 1.9% | Jan 8, 2020 | When using nested workers, a use-after-free could occur during worker destruction. This resulted in a potentially exploi... |
| CVE-2019-17005 | HIGH | 8.8 | 1.9% | Jan 8, 2020 | The plain text serializer used a fixed-size array for the number of <ol> elements it could process; however it was possi... |
| CVE-2019-11764 | HIGH | 8.8 | 1.5% | Jan 8, 2020 | Mozilla developers and community members reported memory safety bugs present in Firefox 69 and Firefox ESR 68.1. Some of... |
| CVE-2019-11760 | HIGH | 8.8 | 1.4% | Jan 8, 2020 | A fixed-size stack buffer could overflow in nrappkit when doing WebRTC signaling. This resulted in a potentially exploit... |
| CVE-2019-11759 | HIGH | 8.8 | 1.8% | Jan 8, 2020 | An attacker could have caused 4 bytes of HMAC output to be written past the end of a buffer stored on the stack. This co... |
| CVE-2019-11758 | HIGH | 8.8 | 1.3% | Jan 8, 2020 | Mozilla community member Philipp reported a memory safety bug present in Firefox 68 when 360 Total Security was installe... |
Check if your code is affected by 2019 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now