2019 CVE Vulnerabilities

17,619 CVEs published in 2019.

Filter:CRITICALClear
CVE IDSeverityCVSSDescription
CVE-2019-1723CRITICAL9.8A vulnerability in the Cisco Common Services Platform Collector (CSPC) could allow an unauthenticated, remote attacker t...
CVE-2019-9641CRITICAL9.8An issue was discovered in the EXIF component in PHP before 7.1.27, 7.2.x before 7.2.16, and 7.3.x before 7.3.3. There i...
CVE-2019-8275CRITICAL9.8UltraVNC revision 1211 has multiple improper null termination vulnerabilities in VNC server code, which result in out-of...
CVE-2019-8274CRITICAL9.8UltraVNC revision 1211 has a heap buffer overflow vulnerability in VNC server code inside file transfer offer handler, w...
CVE-2019-8273CRITICAL9.8UltraVNC revision 1211 has a heap buffer overflow vulnerability in VNC server code inside file transfer request handler,...
CVE-2019-8272CRITICAL9.8UltraVNC revision 1211 has multiple off-by-one vulnerabilities in VNC server code, which can potentially result in code ...
CVE-2019-8271CRITICAL9.8UltraVNC revision 1211 has a heap buffer overflow vulnerability in VNC server code inside file transfer handler, which c...
CVE-2019-8268CRITICAL9.8UltraVNC revision 1206 has multiple off-by-one vulnerabilities in VNC client code connected with improper usage of Clien...
CVE-2019-9636CRITICAL9.8Python 2.7.x through 2.7.16 and 3.x through 3.7.2 is affected by: Improper Handling of Unicode Encoding (with an incorre...
CVE-2019-1003034CRITICAL9.9A sandbox bypass vulnerability exists in Jenkins Job DSL Plugin 1.71 and earlier in job-dsl-core/src/main/groovy/javapos...
CVE-2019-1003032CRITICAL9.9A sandbox bypass vulnerability exists in Jenkins Email Extension Plugin 2.64 and earlier in pom.xml, src/main/java/hudso...
CVE-2019-1003031CRITICAL9.9A sandbox bypass vulnerability exists in Jenkins Matrix Project Plugin 1.13 and earlier in pom.xml, src/main/java/hudson...
CVE-2019-1003030CRITICAL9.9A sandbox bypass vulnerability exists in Jenkins Pipeline: Groovy Plugin 2.63 and earlier in pom.xml, src/main/java/org/...
CVE-2019-1003029CRITICAL9.9A sandbox bypass vulnerability exists in Jenkins Script Security Plugin 1.53 and earlier in src/main/java/org/jenkinsci/...
CVE-2019-5019CRITICAL9.8A heap-based overflow vulnerability exists in the PowerPoint document conversion function of Rainbow PDF Office Server D...
CVE-2019-0604CRITICAL9.8A remote code execution vulnerability exists in Microsoft SharePoint when the software fails to check the source markup ...
CVE-2019-3922CRITICAL9.8The Alcatel Lucent I-240W-Q GPON ONT using firmware version 3FE54567BOZJ19 is vulnerable to a stack buffer overflow via ...
CVE-2019-3918CRITICAL9.8The Alcatel Lucent I-240W-Q GPON ONT using firmware version 3FE54567BOZJ19 contains multiple hard coded credentials for ...
CVE-2019-6563CRITICAL9.8Moxa IKS and EDS generate a predictable cookie calculated with an MD5 hash, allowing an attacker to capture the administ...
CVE-2019-6557CRITICAL9.8Several buffer overflow vulnerabilities have been identified in Moxa IKS and EDS, which may allow remote code execution.
CVE-2019-6524CRITICAL9.8Moxa IKS and EDS do not implement sufficient measures to prevent multiple failed authentication attempts, which may allo...
CVE-2019-6522CRITICAL9.1Moxa IKS and EDS fails to properly check array bounds which may allow an attacker to read device memory on arbitrary add...
CVE-2019-4032CRITICAL9.8IBM Financial Transaction Manager for Digital Payments for Multi-Platform 3.1.0 is vulnerable to SQL injection. A remote...
CVE-2019-8262CRITICAL9.8UltraVNC revision 1203 has multiple heap buffer overflow vulnerabilities in VNC client code inside Ultra decoder, which ...
CVE-2019-8258CRITICAL9.8UltraVNC revision 1198 has a heap buffer overflow vulnerability in VNC client code which results code execution. This at...

Check if your code is affected by 2019 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now