2019 CVE Vulnerabilities
17,619 CVEs published in 2019.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2019-2181 | — | — | 0.4% | Sep 5, 2019 | In binder_transaction of binder.c in the Android kernel, there is a possible out of bounds write due to an integer overf... |
| CVE-2019-2180 | — | — | 0.2% | Sep 5, 2019 | In ippSetValueTag of ipp.c in Android 8.0, 8.1 and 9, there is a possible out of bounds read due to improper input valid... |
| CVE-2019-2179 | — | — | 0.4% | Sep 5, 2019 | In NDEF_MsgValidate of ndef_utils in Android 7.1.1, 7.1.2, 8.0, 8.1 and 9, there is a possible out of bounds read due to... |
| CVE-2019-2178 | — | — | 0.2% | Sep 5, 2019 | In rw_t4t_sm_read_ndef of rw_t4t in Android 7.1.1, 7.1.2, 8.0, 8.1 and 9, there is a possible out of bounds write due to... |
| CVE-2019-2177 | — | — | 0.9% | Sep 5, 2019 | In isPreferred of HidProfile.java in Android 7.1.1, 7.1.2, 8.0, 8.1 and 9, there is a possible device type confusion due... |
| CVE-2019-2176 | — | — | 1.0% | Sep 5, 2019 | In ihevcd_parse_buffering_period_sei of ihevcd_parse_headers.c in Android 8.0, 8.1 and 9, there is a possible out of bou... |
| CVE-2019-2175 | — | — | 0.2% | Sep 5, 2019 | In checkAccess of SliceManagerService.java in Android 9, there is a possible permissions check bypass due to incorrect o... |
| CVE-2019-2174 | — | — | 0.1% | Sep 5, 2019 | In SensorManager::assertStateLocked of SensorManager.cpp in Android 7.1.1, 7.1.2, 8.0, 8.1, and 9, there is a possible u... |
| CVE-2019-2124 | — | — | 0.1% | Sep 5, 2019 | In ComposeActivityEmailExternal of ComposeActivityEmailExternal.java in Android 7.1.1, 7.1.2, 8.0, 8.1 and 9, there is a... |
| CVE-2019-2123 | — | — | 0.2% | Sep 5, 2019 | In execTransact of Binder.java in Android 7.1.1, 7.1.2, 8.0, 8.1, and 9, there is a possible local execution of arbitrar... |
| CVE-2019-2115 | — | — | 0.3% | Sep 5, 2019 | In GateKeeper::MintAuthToken of gatekeeper.cpp in Android 7.1.1, 7.1.2, 8.0, 8.1 and 9, there is possible memory corrupt... |
| CVE-2019-2108 | — | — | 1.0% | Sep 5, 2019 | In ihevcd_ref_list of ihevcd_ref_list.c in Android 10, there is a possible out of bounds write due to a missing bounds c... |
| CVE-2019-2103 | — | — | 0.2% | Sep 5, 2019 | In Google Assistant in Android 9, there is a possible permissions bypass that allows the Assistant to take a screenshot ... |
| CVE-2019-14224 | — | — | 5.3% | Sep 5, 2019 | An issue was discovered in Alfresco Community Edition 5.2 201707. By leveraging multiple components in the Alfresco Soft... |
| CVE-2019-14222 | — | — | 3.0% | Sep 5, 2019 | An issue was discovered in Alfresco Community Edition versions 6.0 and lower. An unauthenticated, remote attacker could ... |
| CVE-2019-15029 | — | — | 12.3% | Sep 5, 2019 | FusionPBX 4.4.8 allows an attacker to execute arbitrary system commands by submitting a malicious command to the service... |
| CVE-2019-11380 | — | — | 1.6% | Sep 5, 2019 | The master-password feature in the ES File Explorer File Manager application 4.2.0.1.3 for Android can be bypassed via a... |
| CVE-2019-15848 | — | — | 1.4% | Sep 5, 2019 | JetBrains TeamCity 2019.1 and 2019.1.1 allows cross-site scripting (XSS), potentially making it possible to send an arbi... |
| CVE-2019-14339 | — | — | 5.4% | Sep 5, 2019 | The ContentProvider in the Canon PRINT jp.co.canon.bsd.ad.pixmaprint 2.5.5 application for Android does not properly res... |
| CVE-2019-10753 | — | — | 0.7% | Sep 5, 2019 | In all versions prior to version 3.9.6 for eclipse-wtp, all versions prior to version 9.4.4 for eclipse-cdt, and all ver... |
| CVE-2019-15955 | — | — | 0.9% | Sep 5, 2019 | An issue was discovered in Total.js CMS 12.0.0. A low privilege user can perform a simple transformation of a cookie to ... |
| CVE-2019-15953 | — | — | 1.5% | Sep 5, 2019 | An issue was discovered in Total.js CMS 12.0.0. An authenticated user with limited privileges can get access to a resour... |
| CVE-2019-15952 | — | — | 5.1% | Sep 5, 2019 | An issue was discovered in Total.js CMS 12.0.0. An authenticated user with the Pages privilege can conduct a path traver... |
| CVE-2019-14278 | — | — | 1.2% | Sep 5, 2019 | In Knowage through 6.1.1, an unauthenticated user can enumerated valid usernames via the ChangePwdServlet page. |
| CVE-2019-13349 | — | — | 1.3% | Sep 5, 2019 | In Knowage through 6.1.1, an authenticated user that accesses the users page will obtain all user password hashes. |
Check if your code is affected by 2019 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now