2019 CVE Vulnerabilities
17,619 CVEs published in 2019.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2019-8539 | HIGH | 7.8 | 1.1% | Oct 27, 2020 | A memory initialization issue was addressed with improved memory handling. This issue is fixed in macOS Mojave 10.14.6, ... |
| CVE-2019-8538 | MEDIUM | 5.5 | 0.8% | Oct 27, 2020 | A denial of service issue was addressed with improved validation. This issue is fixed in watchOS 5.2, macOS Mojave 10.14... |
| CVE-2019-8534 | MEDIUM | 6.7 | 0.4% | Oct 27, 2020 | A logic issue existed resulting in memory corruption. This was addressed with improved state management. This issue is f... |
| CVE-2019-8532 | MEDIUM | 5.5 | 0.7% | Oct 27, 2020 | A permissions issue was addressed by removing vulnerable code and adding additional checks. This issue is fixed in watch... |
| CVE-2019-8528 | MEDIUM | 6.7 | 0.4% | Oct 27, 2020 | A use after free issue was addressed with improved memory management. This issue is fixed in watchOS 5.2, macOS Mojave 1... |
| CVE-2019-8525 | MEDIUM | 6.7 | 0.4% | Oct 27, 2020 | A memory corruption issue was addressed with improved state management. This issue is fixed in macOS Mojave 10.14.5, Sec... |
| CVE-2019-8509 | HIGH | 7.8 | 0.7% | Oct 27, 2020 | This issue was addressed by removing the vulnerable code. This issue is fixed in macOS Catalina 10.15.1, Security Update... |
| CVE-2019-7291 | MEDIUM | 6.5 | 1.1% | Oct 27, 2020 | A denial of service issue was addressed with improved memory handling. This issue is fixed in AirPort Base Station Firmw... |
| CVE-2019-7288 | CRITICAL | 9.8 | 1.4% | Oct 27, 2020 | The issue was addressed with improved validation on the FaceTime server. This issue is fixed in macOS Mojave 10.14.3 Sup... |
| CVE-2019-6238 | HIGH | 7.8 | 1.1% | Oct 27, 2020 | A validation issue existed in the handling of symlinks. This issue was addressed with improved validation of symlinks. T... |
| CVE-2019-14719 | HIGH | 7.8 | 0.9% | Oct 23, 2020 | Verifone MX900 series Pinpad Payment Terminals with OS 30251000 allow multiple arbitrary command injections, as demonstr... |
| CVE-2019-14718 | MEDIUM | 6.7 | 1.2% | Oct 23, 2020 | Verifone MX900 series Pinpad Payment Terminals with OS 30251000 have Insecure Permissions, with resultant svc_netcontrol... |
| CVE-2019-14717 | HIGH | 7.8 | 0.3% | Oct 23, 2020 | Verifone Verix OS on VerixV Pinpad Payment Terminals with QT000530 have a Buffer Overflow via the Run system call. |
| CVE-2019-14716 | MEDIUM | 6.6 | 0.3% | Oct 23, 2020 | Verifone VerixV Pinpad Payment Terminals with QT000530 have an undocumented physical access mode (aka VerixV shell.out). |
| CVE-2019-14715 | MEDIUM | 6.8 | 0.3% | Oct 23, 2020 | Verifone Pinpad Payment Terminals allow undocumented physical access to the system via an SBI bootloader memory write op... |
| CVE-2019-14713 | MEDIUM | 5.5 | 0.3% | Oct 23, 2020 | Verifone MX900 series Pinpad Payment Terminals with OS 30251000 allow installation of unsigned packages. |
| CVE-2019-14712 | HIGH | 7.8 | 0.3% | Oct 23, 2020 | Verifone VerixV Pinpad Payment Terminals with QT000530 allow bypass of integrity and origin control for S1G file generat... |
| CVE-2019-14711 | HIGH | 7 | 0.2% | Oct 23, 2020 | Verifone MX900 series Pinpad Payment Terminals with OS 30251000 have a race condition for RBAC bypass. |
| CVE-2019-17007 | HIGH | 7.5 | 1.4% | Oct 22, 2020 | In Network Security Services before 3.44, a malformed Netscape Certificate Sequence can cause NSS to crash, resulting in... |
| CVE-2019-17006 | CRITICAL | 9.8 | 3.6% | Oct 22, 2020 | In Network Security Services (NSS) before 3.46, several cryptographic primitives had missing length checks. In cases whe... |
| CVE-2019-16128 | MEDIUM | 6.8 | 0.6% | Oct 22, 2020 | Microchip CryptoAuthentication Library CryptoAuthLib prior to 20191122 has a Buffer Overflow (issue 1 of 2). |
| CVE-2019-16129 | MEDIUM | 6.8 | 0.6% | Oct 22, 2020 | Microchip CryptoAuthentication Library CryptoAuthLib prior to 20191122 has a Buffer Overflow (issue 2 of 2). |
| CVE-2019-16127 | CRITICAL | 9.1 | 2.0% | Oct 22, 2020 | Atmel Advanced Software Framework (ASF) 4 has an Integer Overflow. |
| CVE-2019-9080 | HIGH | 7.5 | 0.7% | Oct 20, 2020 | DomainMOD before 4.14.0 uses MD5 without a salt for password storage. |
| CVE-2019-4680 | HIGH | 8.8 | 1.0% | Oct 20, 2020 | IBM Sterling B2B Integrator Standard Edition 5.2.0.0 through 6.0.2.2 is vulnerable to SQL injection. A remote attacker c... |
Check if your code is affected by 2019 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now