2019 CVE Vulnerabilities
17,619 CVEs published in 2019.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2019-13406 | — | — | 1.6% | Aug 29, 2019 | A broken access control vulnerability found in Advan VD-1 firmware versions up to 230. An attacker can send a POST reque... |
| CVE-2019-13405 | — | — | 2.9% | Aug 29, 2019 | A broken access control vulnerability found in Advan VD-1 firmware version 230 leads to insecure ADB service. An attacke... |
| CVE-2019-10724 | — | — | 1.2% | Aug 29, 2019 | There is a vulnerability with the Dolby DAX2 API system services in which a low-privileged user can terminate arbitrary ... |
| CVE-2019-9933 | — | — | 1.5% | Aug 28, 2019 | Various Lexmark products have a Buffer Overflow (issue 3 of 3). |
| CVE-2019-9932 | — | — | 1.5% | Aug 28, 2019 | Various Lexmark products have a Buffer Overflow (issue 2 of 3). |
| CVE-2019-9931 | — | — | 1.1% | Aug 28, 2019 | Various Lexmark printers contain a denial of service vulnerability in the SNMP service that can be exploited to crash th... |
| CVE-2019-9930 | — | — | 1.5% | Aug 28, 2019 | Various Lexmark products have an Integer Overflow. |
| CVE-2019-10059 | — | — | 0.9% | Aug 28, 2019 | The legacy finger service (TCP port 79) is enabled by default on various older Lexmark devices. |
| CVE-2019-10057 | — | — | 0.4% | Aug 28, 2019 | Various Lexmark products have CSRF. |
| CVE-2019-15753 | — | — | 2.6% | Aug 28, 2019 | In OpenStack os-vif 1.15.x before 1.15.2, and 1.16.0, a hard-coded MAC aging time of 0 disables MAC learning in linuxbri... |
| CVE-2019-10056 | — | — | 1.4% | Aug 28, 2019 | An issue was discovered in Suricata 4.1.3. The code mishandles the case of sending a network packet with the right type,... |
| CVE-2019-10055 | — | — | 1.4% | Aug 28, 2019 | An issue was discovered in Suricata 4.1.3. The function ftp_pasv_response lacks a check for the length of part1 and part... |
| CVE-2019-10054 | — | — | 1.4% | Aug 28, 2019 | An issue was discovered in Suricata 4.1.3. The function process_reply_record_v3 lacks a check for the length of reply.da... |
| CVE-2019-14694 | — | — | 0.4% | Aug 28, 2019 | A use-after-free flaw in the sandbox container implemented in cmdguard.sys in Comodo Antivirus 12.0.0.6870 can be trigge... |
| CVE-2019-10052 | — | — | 2.1% | Aug 28, 2019 | An issue was discovered in Suricata 4.1.3. If the network packet does not have the right length, the parser tries to acc... |
| CVE-2019-10051 | — | — | 2.1% | Aug 28, 2019 | An issue was discovered in Suricata 4.1.3. If the function filetracker_newchunk encounters an unsafe "Some(sfcm) => { ft... |
| CVE-2019-5590 | — | — | 1.0% | Aug 28, 2019 | The URL part of the report message is not encoded in Fortinet FortiWeb 6.0.2 and below which may allow an attacker to ex... |
| CVE-2019-15720 | — | — | 0.4% | Aug 28, 2019 | CloudBerry Backup v6.1.2.34 allows local privilege escalation via a Pre or Post backup action. With only user-level acce... |
| CVE-2019-15496 | — | — | 0.6% | Aug 28, 2019 | MyT Project Management 1.5.1 lacks CSRF protection and, for example, allows a user/create CSRF attack. This could lead t... |
| CVE-2019-15230 | — | — | 0.6% | Aug 28, 2019 | LibreNMS v1.54 has XSS in the Create User, Inventory, Add Device, Notifications, Alert Rule, Create Maintenance, and Ale... |
| CVE-2019-9935 | — | — | 0.8% | Aug 28, 2019 | Various Lexmark products have Incorrect Access Control (issue 2 of 2). |
| CVE-2019-9934 | — | — | 0.8% | Aug 28, 2019 | Various Lexmark products have Incorrect Access Control (issue 1 of 2). |
| CVE-2019-13348 | — | — | 1.5% | Aug 28, 2019 | In Knowage through 6.1.1, an authenticated user who accesses the datasources page will gain access to any data source cr... |
| CVE-2019-13189 | — | — | 0.9% | Aug 28, 2019 | In Knowage through 6.1.1, there is XSS via the start_url or user_id field to the ChangePwdServlet page. |
| CVE-2019-10058 | — | — | 1.1% | Aug 28, 2019 | Various Lexmark products have Incorrect Access Control. |
Check if your code is affected by 2019 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now