2019 CVE Vulnerabilities

17,623 CVEs published in 2019.

CVE IDSeverityCVSSDescription
CVE-2019-9547In Storage Performance Development Kit (SPDK) before 19.01, a malicious vhost client (i.e., virtual machine) could caref...
CVE-2019-9546SolarWinds Orion Platform before 2018.4 Hotfix 2 allows privilege escalation through the RabbitMQ service.
CVE-2019-9545An issue was discovered in Poppler 0.74.0. A recursive function call, in JBIG2Stream::readTextRegion() located in JBIG2S...
CVE-2019-9544An issue was discovered in Bento4 1.5.1-628. An out of bounds write occurs in AP4_CttsTableEntry::AP4_CttsTableEntry() l...
CVE-2019-9543An issue was discovered in Poppler 0.74.0. A recursive function call, in JBIG2Stream::readGenericBitmap() located in JBI...
CVE-2019-9484The Glen Dimplex Deutschland GmbH implementation of the Carel pCOWeb configuration tool allows remote attackers to obtai...
CVE-2019-9483Amazon Ring Doorbell before 3.4.7 mishandles encryption, which allows attackers to obtain audio and video data, or inser...
CVE-2019-9482In MISP 2.4.102, an authenticated user can view sightings that they should not be eligible for. Exploiting this requires...
CVE-2019-6551HIGH7.5Pangea Communications Internet FAX ATA all Versions 3.1.8 and prior allow an attacker to bypass user authentication usin...
CVE-2019-6547MEDIUM5.5Delta Industrial Automation CNCSoft, CNCSoft ScreenEditor Version 1.00.84 and prior. An out-of-bounds read vulnerability...
CVE-2019-6555HIGH7.8Cscape, 9.80 SP4 and prior. An improper input validation vulnerability may be exploited by processing specially crafted ...
CVE-2019-1674HIGH7.8A vulnerability in the update service of Cisco Webex Meetings Desktop App and Cisco Webex Productivity Tools for Windows...
CVE-2019-1663CRITICAL9.8A vulnerability in the web-based management interface of the Cisco RV110W Wireless-N VPN Firewall, Cisco RV130W Wireless...
CVE-2019-2001The permissions on /proc/iomem were world-readable. This could lead to local information disclosure with no additional e...
CVE-2019-2000In several functions of binder.c, there is possible memory corruption due to a use after free. This could lead to local ...
CVE-2019-1999HIGH7.8In binder_alloc_free_page of binder_alloc.c, there is a possible double free due to improper locking. This could lead to...
CVE-2019-1998In event_handler of keymaster_app.c, there is possible resource exhaustion due to a table being lost on reboot. This cou...
CVE-2019-1997In random_get_bytes of random.c, there is a possible degradation of randomness due to an insecure default value. This co...
CVE-2019-1996In avrc_pars_browse_rsp of avrc_pars_ct.cc, there is a possible out of bounds read due to a missing bounds check. This c...
CVE-2019-1995In ComposeActivityEmail of ComposeActivityEmail.java, there is a possible way to silently attach files to an email due t...
CVE-2019-1994In refresh of DevelopmentTiles.java, there is the possibility of leaving development settings accessible due to an insec...
CVE-2019-1993In register_app of btif_hd.cc, there is a possible memory corruption due to an integer overflow. This could lead to loca...
CVE-2019-1992In bta_hl_sdp_query_results of bta_hl_main.cc, there is a possible use-after-free due to a race condition. This could le...
CVE-2019-1991In btif_dm_data_copy of btif_core.cc, there is a possible out of bounds write due to a buffer overflow. This could lead ...
CVE-2019-1988In sample6 of SkSwizzler.cpp, there is a possible out of bounds write due to improper input validation. This could lead ...

Check if your code is affected by 2019 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now