2019 CVE Vulnerabilities
17,619 CVEs published in 2019.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2019-5076 | HIGH | 8.8 | 3.7% | Dec 3, 2019 | An exploitable out-of-bounds write vulnerability exists in the igcore19d.dll PNG header-parser of the Accusoft ImageGear... |
| CVE-2019-19543 | HIGH | 7.8 | 0.4% | Dec 3, 2019 | In the Linux kernel before 5.1.6, there is a use-after-free in serial_ir_init_module() in drivers/media/rc/serial_ir.c. |
| CVE-2019-9689 | HIGH | 7.5 | 1.5% | Dec 3, 2019 | process_certificate in tls1.c in Cameron Hamilton-Rich axTLS through 2.1.5 has a Buffer Overflow via a crafted TLS certi... |
| CVE-2019-19458 | HIGH | 8.6 | 2.8% | Dec 3, 2019 | SALTO ProAccess SPACE 5.4.3.0 allows Directory Traversal in the Data Export feature. |
| CVE-2019-19383 | HIGH | 8.8 | 2.8% | Dec 3, 2019 | freeFTPd 1.0.8 has a Post-Authentication Buffer Overflow via a crafted SIZE command (this is exploitable even if logging... |
| CVE-2019-19382 | HIGH | 7.8 | 0.5% | Dec 3, 2019 | Max Secure Anti Virus Plus 19.0.4.020 has Insecure Permissions on the installation directory. Local attackers can replac... |
| CVE-2019-10013 | HIGH | 7.5 | 1.9% | Dec 3, 2019 | The asn1_signature function in asn1.c in Cameron Hamilton-Rich axTLS through 2.1.5 has a Buffer Overflow that allows rem... |
| CVE-2019-7366 | HIGH | 7.8 | 0.9% | Dec 3, 2019 | Buffer overflow vulnerability in Autodesk FBX Software Development Kit version 2019.5. A user may be tricked into openin... |
| CVE-2019-7365 | HIGH | 7.8 | 0.4% | Dec 3, 2019 | DLL preloading vulnerability in Autodesk Desktop Application versions 7.0.16.29 and earlier. An attacker may trick a use... |
| CVE-2019-4130 | HIGH | 8.8 | 2.0% | Dec 3, 2019 | IBM Cloud Pak System 2.3 and 2.3.0.1 could allow a remote attacker to upload arbitrary files, which could allow the atta... |
| CVE-2019-19316 | HIGH | 7.5 | 1.0% | Dec 2, 2019 | When using the Azure backend with a shared access signature (SAS), Terraform versions prior to 0.12.17 may transmit the ... |
| CVE-2019-19020 | HIGH | 7.2 | 2.3% | Dec 2, 2019 | An issue was discovered in TitanHQ WebTitan before 5.18. In the administration web interface it is possible to upload a ... |
| CVE-2019-19019 | HIGH | 7.5 | 1.6% | Dec 2, 2019 | An issue was discovered in TitanHQ WebTitan before 5.18. It contains a Remote Code Execution issue through which an atta... |
| CVE-2019-19017 | HIGH | 8.1 | 1.1% | Dec 2, 2019 | An issue was discovered in TitanHQ WebTitan before 5.18. The appliance has a hard-coded root password set during install... |
| CVE-2019-19016 | HIGH | 7.5 | 1.2% | Dec 2, 2019 | An issue was discovered in TitanHQ WebTitan before 5.18. Some functions, such as /history-x.php, of the administration i... |
| CVE-2019-19014 | HIGH | 7.8 | 0.5% | Dec 2, 2019 | An issue was discovered in TitanHQ WebTitan before 5.18. It has a sudoers file that enables low-privilege users to execu... |
| CVE-2019-12393 | HIGH | 7.5 | 1.1% | Dec 2, 2019 | Anviz access control devices are vulnerable to replay attacks which could allow attackers to intercept and replay open d... |
| CVE-2019-12391 | HIGH | 7.5 | 1.1% | Dec 2, 2019 | The Anviz Management System for access control has insufficient logging for device events such as door open requests. |
| CVE-2019-12389 | HIGH | 7.5 | 1.8% | Dec 2, 2019 | Anviz access control devices expose credentials (names and passwords) by allowing remote attackers to query this informa... |
| CVE-2019-12388 | HIGH | 7.5 | 0.8% | Dec 2, 2019 | Anviz access control devices perform cleartext transmission of sensitive information (passwords/pins and names) when rep... |
| CVE-2019-15628 | HIGH | 7.8 | 0.5% | Dec 2, 2019 | Trend Micro Security (Consumer) 2020 (v16.0.1221 and below) is affected by a DLL hijacking vulnerability that could allo... |
| CVE-2019-19490 | HIGH | 7.3 | 0.4% | Dec 2, 2019 | LiteManager 4.5.0 has weak permissions (Everyone: Full Control) in the "LiteManagerFree - Server" folder, as demonstrate... |
| CVE-2019-19469 | HIGH | 8.8 | 0.6% | Dec 1, 2019 | In Zmanda Management Console 3.3.9, ZMC_Admin_Advanced?form=adminTasks&action=Apply&command= allows CSRF, as demonstrate... |
| CVE-2019-19468 | HIGH | 7.8 | 1.7% | Nov 30, 2019 | Free Photo Viewer 1.3 allows remote attackers to execute arbitrary code via a crafted BMP and/or TIFF file that triggers... |
| CVE-2019-19396 | HIGH | 7.5 | 1.1% | Nov 29, 2019 | illumos, as used in OmniOS Community Edition before r151030y, allows a kernel crash via an application with multiple thr... |
Check if your code is affected by 2019 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now