2019 CVE Vulnerabilities
17,619 CVEs published in 2019.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2019-11757 | HIGH | 8.8 | 1.3% | Jan 8, 2020 | When following the value's prototype chain, it was possible to retain a reference to a locale, delete it, and subsequent... |
| CVE-2019-11756 | HIGH | 8.8 | 1.5% | Jan 8, 2020 | Improper refcounting of soft token session objects could cause a use-after-free and crash (likely limited to a denial of... |
| CVE-2019-11745 | HIGH | 8.8 | 3.0% | Jan 8, 2020 | When encrypting with a block cipher, if a call to NSC_EncryptUpdate was made with data smaller than the block size, a sm... |
| CVE-2019-19544 | HIGH | 7.8 | 0.4% | Jan 8, 2020 | CA Automic Dollar Universe 5.3.3 contains a vulnerability, related to the uxdqmsrv binary being setuid root, that allows... |
| CVE-2019-20362 | HIGH | 7.8 | 0.7% | Jan 8, 2020 | In Teradici PCoIP Agent before 19.08.1 and PCoIP Client before 19.08.3, an unquoted service path can cause execution of ... |
| CVE-2019-20360 | HIGH | 7.5 | 2.5% | Jan 8, 2020 | A flaw in Give before 2.5.5, a WordPress plugin, allowed unauthenticated users to bypass API authentication methods and ... |
| CVE-2019-17148 | HIGH | 7.8 | 0.5% | Jan 7, 2020 | This vulnerability allows local attackers to escalate privileges on affected installations of Parallels Desktop Parallel... |
| CVE-2019-17147 | HIGH | 8.8 | 13.7% | Jan 7, 2020 | This vulnerability allows remote attackers to execute arbitrary code on affected installations of TP-LINK TL-WR841N rout... |
| CVE-2019-18386 | HIGH | 8.7 | 0.8% | Jan 7, 2020 | Systems management on Unisys ClearPath Forward Libra and ClearPath MCP Software Series can fault and have other unspecif... |
| CVE-2019-14819 | HIGH | 8.8 | 1.0% | Jan 7, 2020 | A flaw was found during the upgrade of an existing OpenShift Container Platform 3.x cluster. Using CRI-O, the dockergc s... |
| CVE-2019-14866 | HIGH | 7.3 | 0.7% | Jan 7, 2020 | In all versions of cpio before 2.13 does not properly validate input files when generating TAR archives. When cpio is us... |
| CVE-2019-14843 | HIGH | 8.8 | 1.2% | Jan 7, 2020 | A flaw was found in Wildfly Security Manager, running under JDK 11 or 8, that authorized requests for any requester. Thi... |
| CVE-2019-6857 | HIGH | 7.5 | 1.6% | Jan 6, 2020 | A CWE-754: Improper Check for Unusual or Exceptional Conditions vulnerability exists in Modicon M580, Modicon M340, Modi... |
| CVE-2019-6856 | HIGH | 7.5 | 1.6% | Jan 6, 2020 | A CWE-754: Improper Check for Unusual or Exceptional Conditions vulnerability exists in Modicon M580, Modicon M340, Modi... |
| CVE-2019-6855 | HIGH | 7.3 | 1.0% | Jan 6, 2020 | Incorrect Authorization vulnerability exists in EcoStruxure Control Expert (all versions prior to 14.1 Hot Fix), Unity P... |
| CVE-2019-6854 | HIGH | 7.8 | 0.2% | Jan 6, 2020 | A CWE-287: Improper Authentication vulnerability exists in a folder within EcoStruxure Geo SCADA Expert (ClearSCADA) -wi... |
| CVE-2019-18625 | HIGH | 7.5 | 1.7% | Jan 6, 2020 | An issue was discovered in Suricata 5.0.0. It was possible to bypass/evade any tcp based signature by faking a closed TC... |
| CVE-2019-19585 | HIGH | 7.8 | 5.7% | Jan 6, 2020 | An issue was discovered in rConfig 3.9.3. The install script updates the /etc/sudoers file for rconfig specific tasks. A... |
| CVE-2019-19509 | HIGH | 8.8 | 71.6% | Jan 6, 2020 | An issue was discovered in rConfig 3.9.3. A remote authenticated user can directly execute system commands by sending a ... |
| CVE-2019-16274 | HIGH | 7.5 | 0.7% | Jan 6, 2020 | DTEN D5 before 1.3 and D7 before 1.3 devices transfer customer data files via unencrypted HTTP. |
| CVE-2019-9469 | HIGH | 7.8 | 0.2% | Jan 6, 2020 | In km_compute_shared_hmac of km4.c, there is a possible out of bounds write due to improper input validation. This could... |
| CVE-2019-9468 | HIGH | 7.8 | 0.2% | Jan 6, 2020 | In export_key_der of export_key.cpp, there is possible memory corruption due to a double free. This could lead to local ... |
| CVE-2019-15985 | HIGH | 7.2 | 3.3% | Jan 6, 2020 | Multiple vulnerabilities in the REST and SOAP API endpoints of Cisco Data Center Network Manager (DCNM) could allow an a... |
| CVE-2019-15984 | HIGH | 7.2 | 46.9% | Jan 6, 2020 | Multiple vulnerabilities in the REST and SOAP API endpoints of Cisco Data Center Network Manager (DCNM) could allow an a... |
| CVE-2019-15982 | HIGH | 7.2 | 14.3% | Jan 6, 2020 | Multiple vulnerabilities in the REST and SOAP API endpoints and the Application Framework feature of Cisco Data Center N... |
Check if your code is affected by 2019 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now