2019 CVE Vulnerabilities
17,619 CVEs published in 2019.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2019-11658 | — | — | 0.7% | Aug 30, 2019 | Information exposure in Micro Focus Content Manager, versions 9.1, 9.2 and 9.3. This vulnerability when configured to us... |
| CVE-2019-8461 | — | — | 1.1% | Aug 29, 2019 | Check Point Endpoint Security Initial Client for Windows before version E81.30 tries to load a DLL placed in any PATH lo... |
| CVE-2019-11364 | — | — | 2.2% | Aug 29, 2019 | An OS Command Injection vulnerability in Snare Central before 7.4.5 allows remote authenticated attackers to inject arbi... |
| CVE-2019-11363 | — | — | 1.1% | Aug 29, 2019 | A SQL injection vulnerability in Snare Central before 7.4.5 allows remote authenticated attackers to execute arbitrary S... |
| CVE-2019-11396 | — | — | 0.6% | Aug 29, 2019 | An issue was discovered in Avira Free Security Suite 10. The permissive access rights on the SoftwareUpdater folder (fil... |
| CVE-2019-15811 | — | — | 6.4% | Aug 29, 2019 | In DomainMOD through 4.13, the parameter daterange in the file reporting/domains/cost-by-month.php has XSS. |
| CVE-2019-14979 | — | — | 1.1% | Aug 29, 2019 | cgi-bin/webscr?cmd=_cart in the WooCommerce PayPal Checkout Payment Gateway plugin 1.6.17 for WordPress allows Parameter... |
| CVE-2019-14978 | — | — | 1.2% | Aug 29, 2019 | /payu/icpcheckout/ in the WooCommerce PayU India Payment Gateway plugin 2.1.1 for WordPress allows Parameter Tampering i... |
| CVE-2019-14977 | — | — | — | Aug 29, 2019 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Fu... |
| CVE-2019-14970 | — | — | 1.9% | Aug 29, 2019 | A vulnerability in mkv::event_thread_t in VideoLAN VLC media player 3.0.7.1 allows remote attackers to trigger a heap-ba... |
| CVE-2019-14778 | — | — | 1.5% | Aug 29, 2019 | The mkv::virtual_segment_c::seek method of demux/mkv/virtual_segment.cpp in VideoLAN VLC media player 3.0.7.1 has a use-... |
| CVE-2019-14777 | — | — | 1.5% | Aug 29, 2019 | The Control function of demux/mkv/mkv.cpp in VideoLAN VLC media player 3.0.7.1 has a use-after-free. |
| CVE-2019-14776 | — | — | 1.5% | Aug 29, 2019 | A heap-based buffer over-read exists in DemuxInit() in demux/asf/asf.c in VideoLAN VLC media player 3.0.7.1 via a crafte... |
| CVE-2019-14534 | — | — | 1.4% | Aug 29, 2019 | In VideoLAN VLC media player 3.0.7.1, there is a NULL pointer dereference at the function SeekPercent of demux/asf/asf.c... |
| CVE-2019-14533 | — | — | 1.5% | Aug 29, 2019 | The Control function of demux/asf/asf.c in VideoLAN VLC media player 3.0.7.1 has a use-after-free. |
| CVE-2019-15806 | — | — | 1.2% | Aug 29, 2019 | CommScope ARRIS TR4400 devices with firmware through A1.00.004-180301 are vulnerable to an authentication bypass to the ... |
| CVE-2019-15805 | — | — | 1.2% | Aug 29, 2019 | CommScope ARRIS TR4400 devices with firmware through A1.00.004-180301 are vulnerable to an authentication bypass to the ... |
| CVE-2019-14535 | — | — | 1.5% | Aug 29, 2019 | A divide-by-zero error exists in the SeekIndex function of demux/asf/asf.c in VideoLAN VLC media player 3.0.7.1. As a re... |
| CVE-2019-14498 | — | — | 1.5% | Aug 29, 2019 | A divide-by-zero error exists in the Control function of demux/caf.c in VideoLAN VLC media player 3.0.7.1. As a result, ... |
| CVE-2019-14438 | — | — | 1.8% | Aug 29, 2019 | A heap-based buffer over-read in xiph_PackHeaders() in modules/demux/xiph.h in VideoLAN VLC media player 3.0.7.1 allows ... |
| CVE-2019-14437 | — | — | 1.5% | Aug 29, 2019 | The xiph_SplitHeaders function in modules/demux/xiph.h in VideoLAN VLC media player 3.0.7.1 does not check array bounds ... |
| CVE-2019-15717 | — | — | 2.5% | Aug 29, 2019 | Irssi 1.2.x before 1.2.2 has a use-after-free if the IRC server sends a double CAP. |
| CVE-2019-15502 | — | — | 1.7% | Aug 29, 2019 | The TeamSpeak client before 3.3.2 allows remote servers to trigger a crash via the 0xe2 0x81 0xa8 0xe2 0x81 0xa7 byte se... |
| CVE-2019-3394 | — | — | 11.4% | Aug 29, 2019 | There was a local file disclosure vulnerability in Confluence Server and Confluence Data Center via page exporting. An a... |
| CVE-2019-11500 | — | — | 62.3% | Aug 29, 2019 | In Dovecot before 2.2.36.4 and 2.3.x before 2.3.7.2 (and Pigeonhole before 0.5.7.2), protocol processing can fail for qu... |
Check if your code is affected by 2019 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now