2019 CVE Vulnerabilities
17,624 CVEs published in 2019.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2019-16128 | MEDIUM | 6.8 | 0.6% | Oct 22, 2020 | Microchip CryptoAuthentication Library CryptoAuthLib prior to 20191122 has a Buffer Overflow (issue 1 of 2). |
| CVE-2019-16129 | MEDIUM | 6.8 | 0.6% | Oct 22, 2020 | Microchip CryptoAuthentication Library CryptoAuthLib prior to 20191122 has a Buffer Overflow (issue 2 of 2). |
| CVE-2019-16127 | CRITICAL | 9.1 | 2.0% | Oct 22, 2020 | Atmel Advanced Software Framework (ASF) 4 has an Integer Overflow. |
| CVE-2019-9080 | HIGH | 7.5 | 0.7% | Oct 20, 2020 | DomainMOD before 4.14.0 uses MD5 without a salt for password storage. |
| CVE-2019-4680 | HIGH | 8.8 | 1.0% | Oct 20, 2020 | IBM Sterling B2B Integrator Standard Edition 5.2.0.0 through 6.0.2.2 is vulnerable to SQL injection. A remote attacker c... |
| CVE-2019-13633 | MEDIUM | 6.1 | 1.0% | Oct 19, 2020 | Blinger.io v.1.0.2519 is vulnerable to Blind/Persistent XSS. An attacker can send arbitrary JavaScript code via a built-... |
| CVE-2019-12305 | MEDIUM | 6.5 | 0.5% | Oct 16, 2020 | In EZCast Pro II, the administrator password md5 hash is provided upon a web request. This hash can be cracked to access... |
| CVE-2019-19885 | CRITICAL | 9.1 | 1.0% | Oct 16, 2020 | In Bender COMTRAXX, user authorization is validated for most, but not all, routes in the system. A user with knowledge a... |
| CVE-2019-19513 | CRITICAL | 9.8 | 2.9% | Oct 16, 2020 | The BASSMIDI plugin 2.4.12.1 for Un4seen BASS Audio Library on Windows is prone to an out of bounds write vulnerability.... |
| CVE-2019-18796 | MEDIUM | 6.5 | 0.9% | Oct 16, 2020 | The BASS Audio Library 2.4.14 under Windows is prone to a BASS_StreamCreateFile Denial of Service vulnerability (infinit... |
| CVE-2019-18795 | MEDIUM | 6.5 | 1.3% | Oct 16, 2020 | The BASS Audio Library 2.4.14 under Windows is prone to a BASS_StreamCreateFile out of bounds read vulnerability via a c... |
| CVE-2019-18794 | MEDIUM | 6.5 | 1.1% | Oct 16, 2020 | The BASS Audio Library 2.4.14 under Windows is prone to a BASS_StreamCreateFile Use after Free vulnerability via a craft... |
| CVE-2019-17640 | CRITICAL | 9.8 | 2.0% | Oct 15, 2020 | In Eclipse Vert.x 3.4.x up to 3.9.4, 4.0.0.milestone1, 4.0.0.milestone2, 4.0.0.milestone3, 4.0.0.milestone4, 4.0.0.miles... |
| CVE-2019-12411 | — | — | — | Oct 15, 2020 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Fu... |
| CVE-2019-4552 | MEDIUM | 6.1 | 0.9% | Oct 15, 2020 | IBM Security Access Manager 9.0.7 and IBM Security Verify Access 10.0.0 are vulnerable to HTTP response splitting attack... |
| CVE-2019-2194 | HIGH | 7.8 | 0.1% | Oct 14, 2020 | In SurfaceFlinger::createLayer of SurfaceFlinger.cpp, there is a possible arbitrary code execution due to improper casti... |
| CVE-2019-17444 | CRITICAL | 9.8 | 69.4% | Oct 12, 2020 | Jfrog Artifactory uses default passwords (such as "password") for administrative accounts and does not require users to ... |
| CVE-2019-19115 | HIGH | 7.8 | 0.6% | Oct 8, 2020 | An escalation of privilege vulnerability in Nahimic APO Software Component Driver 1.4.2, 1.5.0, 1.5.1, 1.6.1 and 1.6.2 a... |
| CVE-2019-4545 | HIGH | 7.5 | 2.1% | Oct 8, 2020 | IBM QRadar SIEM 7.3 and 7.4 when configured to use Active Directory Authentication may be susceptible to spoofing attack... |
| CVE-2019-16160 | HIGH | 7.5 | 2.5% | Oct 7, 2020 | An integer underflow in the SMB server of MikroTik RouterOS before 6.45.5 allows remote unauthenticated attackers to cra... |
| CVE-2019-4326 | HIGH | 7.5 | 1.1% | Oct 6, 2020 | "HCL AppScan Enterprise security rules update administration section of the web application console is missing HTTP Stri... |
| CVE-2019-4325 | MEDIUM | 5.3 | 0.5% | Oct 6, 2020 | "HCL AppScan Enterprise makes use of broken or risky cryptographic algorithm to store REST API user details." |
| CVE-2019-4725 | MEDIUM | 6.1 | 0.7% | Oct 6, 2020 | IBM Security Access Manager Appliance 9.0 is vulnerable to cross-site scripting. This vulnerability allows users to embe... |
| CVE-2019-19200 | HIGH | 8.8 | 1.7% | Oct 6, 2020 | REDDOXX MailDepot 2032 2.2.1242 allows authenticated users to access the mailboxes of other users. |
| CVE-2019-14558 | MEDIUM | 5.7 | 0.7% | Oct 5, 2020 | Insufficient control flow management in BIOS firmware for 8th, 9th, 10th Generation Intel(R) Core(TM), Intel(R) Celeron(... |
Check if your code is affected by 2019 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now