2019 CVE Vulnerabilities

17,619 CVEs published in 2019.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2019-5278MEDIUM6.5There is an out-of-bounds read vulnerability in the Advanced Packages feature of the Gauss100 OLTP database in CampusIns...
CVE-2019-5260MEDIUM6.5Huawei smartphones HUAWEI Y9 2019 and Honor View 20 have a denial of service vulnerability. Due to insufficient input va...
CVE-2019-5253MEDIUM5.9E5572-855 with versions earlier than 8.0.1.3(H335SP1C233) has an improper authentication vulnerability. The device does ...
CVE-2019-19794MEDIUM5.9The miekg Go DNS package before 1.1.25, as used in CoreDNS before 1.6.6 and other products, improperly generates random ...
CVE-2019-19722MEDIUM5.3In Dovecot before 2.3.9.2, an attacker can crash a push-notification driver with a crafted email when push notifications...
CVE-2019-4426MEDIUM5.4The Case Builder component shipped with 18.0.0.1 through 19.0.0.2 and IBM Case Manager 5.1.1 through 5.3 is vulnerable t...
CVE-2019-14344MEDIUM6.1TemaTres 3.0 has reflected XSS via the replace_string or search_string parameter to the vocab/admin.php?doAdmin=bulkRepl...
CVE-2019-5291MEDIUM5.9Some Huawei products have an insufficient verification of data authenticity vulnerability. A remote, unauthenticated att...
CVE-2019-5290MEDIUM6.5Huawei S5700 and S6700 have a DoS security vulnerability. Attackers with certain permissions perform specific operations...
CVE-2019-5251MEDIUM5.5There is a path traversal vulnerability in several Huawei smartphones. The system does not sufficiently validate certain...
CVE-2019-17599MEDIUM6.1The quiz-master-next (aka Quiz And Survey Master) plugin before 6.3.5 for WordPress is affected by: Cross Site Scripting...
CVE-2019-16777MEDIUM6.5Versions of the npm CLI prior to 6.13.4 are vulnerable to an Arbitrary File Overwrite. It fails to prevent existing glob...
CVE-2019-16775MEDIUM6.5Versions of the npm CLI prior to 6.13.3 are vulnerable to an Arbitrary File Write. It is possible for packages to create...
CVE-2019-5062MEDIUM6.5An exploitable denial-of-service vulnerability exists in the 802.11w security state handling for hostapd 2.6 connected c...
CVE-2019-5061MEDIUM6.5An exploitable denial-of-service vulnerability exists in the hostapd 2.6, where an attacker could trigger AP to send IAP...
CVE-2019-19769MEDIUM6.7In the Linux kernel 5.3.10, there is a use-after-free (read) in the perf_trace_lock_acquire function (related to include...
CVE-2019-19767MEDIUM5.5The Linux kernel before 5.4.2 mishandles ext4_expand_extra_isize, as demonstrated by use-after-free errors in __ext4_exp...
CVE-2019-18341MEDIUM5.3A vulnerability has been identified in Control Center Server (CCS) (All versions < V1.5.0). The SFTP service (default po...
CVE-2019-18340MEDIUM5.5A vulnerability has been identified in Control Center Server (CCS) (All versions < V1.5.0), Control Center Server (CCS) ...
CVE-2019-18335MEDIUM5.3A vulnerability has been identified in SPPA-T3000 Application Server (All versions < Service Pack R8.2 SP2). An attacker...
CVE-2019-18334MEDIUM5.3A vulnerability has been identified in SPPA-T3000 Application Server (All versions < Service Pack R8.2 SP2). An attacker...
CVE-2019-18333MEDIUM5.3A vulnerability has been identified in SPPA-T3000 Application Server (All versions < Service Pack R8.2 SP2). An attacker...
CVE-2019-18332MEDIUM5.3A vulnerability has been identified in SPPA-T3000 Application Server (All versions < Service Pack R8.2 SP2). An attacker...
CVE-2019-18331MEDIUM5.3A vulnerability has been identified in SPPA-T3000 Application Server (All versions < Service Pack R8.2 SP2). An attacker...
CVE-2019-18312MEDIUM5.3A vulnerability has been identified in SPPA-T3000 MS3000 Migration Server (All versions). An attacker with network acces...

Check if your code is affected by 2019 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now