2019 CVE Vulnerabilities
17,619 CVEs published in 2019.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2019-5278 | MEDIUM | 6.5 | 0.6% | Dec 13, 2019 | There is an out-of-bounds read vulnerability in the Advanced Packages feature of the Gauss100 OLTP database in CampusIns... |
| CVE-2019-5260 | MEDIUM | 6.5 | 0.3% | Dec 13, 2019 | Huawei smartphones HUAWEI Y9 2019 and Honor View 20 have a denial of service vulnerability. Due to insufficient input va... |
| CVE-2019-5253 | MEDIUM | 5.9 | 0.6% | Dec 13, 2019 | E5572-855 with versions earlier than 8.0.1.3(H335SP1C233) has an improper authentication vulnerability. The device does ... |
| CVE-2019-19794 | MEDIUM | 5.9 | 2.1% | Dec 13, 2019 | The miekg Go DNS package before 1.1.25, as used in CoreDNS before 1.6.6 and other products, improperly generates random ... |
| CVE-2019-19722 | MEDIUM | 5.3 | 2.5% | Dec 13, 2019 | In Dovecot before 2.3.9.2, an attacker can crash a push-notification driver with a crafted email when push notifications... |
| CVE-2019-4426 | MEDIUM | 5.4 | 0.7% | Dec 13, 2019 | The Case Builder component shipped with 18.0.0.1 through 19.0.0.2 and IBM Case Manager 5.1.1 through 5.3 is vulnerable t... |
| CVE-2019-14344 | MEDIUM | 6.1 | 0.7% | Dec 13, 2019 | TemaTres 3.0 has reflected XSS via the replace_string or search_string parameter to the vocab/admin.php?doAdmin=bulkRepl... |
| CVE-2019-5291 | MEDIUM | 5.9 | 0.4% | Dec 13, 2019 | Some Huawei products have an insufficient verification of data authenticity vulnerability. A remote, unauthenticated att... |
| CVE-2019-5290 | MEDIUM | 6.5 | 0.6% | Dec 13, 2019 | Huawei S5700 and S6700 have a DoS security vulnerability. Attackers with certain permissions perform specific operations... |
| CVE-2019-5251 | MEDIUM | 5.5 | 0.8% | Dec 13, 2019 | There is a path traversal vulnerability in several Huawei smartphones. The system does not sufficiently validate certain... |
| CVE-2019-17599 | MEDIUM | 6.1 | 1.7% | Dec 13, 2019 | The quiz-master-next (aka Quiz And Survey Master) plugin before 6.3.5 for WordPress is affected by: Cross Site Scripting... |
| CVE-2019-16777 | MEDIUM | 6.5 | 2.0% | Dec 13, 2019 | Versions of the npm CLI prior to 6.13.4 are vulnerable to an Arbitrary File Overwrite. It fails to prevent existing glob... |
| CVE-2019-16775 | MEDIUM | 6.5 | 3.3% | Dec 13, 2019 | Versions of the npm CLI prior to 6.13.3 are vulnerable to an Arbitrary File Write. It is possible for packages to create... |
| CVE-2019-5062 | MEDIUM | 6.5 | 0.5% | Dec 12, 2019 | An exploitable denial-of-service vulnerability exists in the 802.11w security state handling for hostapd 2.6 connected c... |
| CVE-2019-5061 | MEDIUM | 6.5 | 0.9% | Dec 12, 2019 | An exploitable denial-of-service vulnerability exists in the hostapd 2.6, where an attacker could trigger AP to send IAP... |
| CVE-2019-19769 | MEDIUM | 6.7 | 1.3% | Dec 12, 2019 | In the Linux kernel 5.3.10, there is a use-after-free (read) in the perf_trace_lock_acquire function (related to include... |
| CVE-2019-19767 | MEDIUM | 5.5 | 2.1% | Dec 12, 2019 | The Linux kernel before 5.4.2 mishandles ext4_expand_extra_isize, as demonstrated by use-after-free errors in __ext4_exp... |
| CVE-2019-18341 | MEDIUM | 5.3 | 1.6% | Dec 12, 2019 | A vulnerability has been identified in Control Center Server (CCS) (All versions < V1.5.0). The SFTP service (default po... |
| CVE-2019-18340 | MEDIUM | 5.5 | 0.3% | Dec 12, 2019 | A vulnerability has been identified in Control Center Server (CCS) (All versions < V1.5.0), Control Center Server (CCS) ... |
| CVE-2019-18335 | MEDIUM | 5.3 | 1.0% | Dec 12, 2019 | A vulnerability has been identified in SPPA-T3000 Application Server (All versions < Service Pack R8.2 SP2). An attacker... |
| CVE-2019-18334 | MEDIUM | 5.3 | 1.0% | Dec 12, 2019 | A vulnerability has been identified in SPPA-T3000 Application Server (All versions < Service Pack R8.2 SP2). An attacker... |
| CVE-2019-18333 | MEDIUM | 5.3 | 1.0% | Dec 12, 2019 | A vulnerability has been identified in SPPA-T3000 Application Server (All versions < Service Pack R8.2 SP2). An attacker... |
| CVE-2019-18332 | MEDIUM | 5.3 | 1.0% | Dec 12, 2019 | A vulnerability has been identified in SPPA-T3000 Application Server (All versions < Service Pack R8.2 SP2). An attacker... |
| CVE-2019-18331 | MEDIUM | 5.3 | 1.0% | Dec 12, 2019 | A vulnerability has been identified in SPPA-T3000 Application Server (All versions < Service Pack R8.2 SP2). An attacker... |
| CVE-2019-18312 | MEDIUM | 5.3 | 1.1% | Dec 12, 2019 | A vulnerability has been identified in SPPA-T3000 MS3000 Migration Server (All versions). An attacker with network acces... |
Check if your code is affected by 2019 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now