2019 CVE Vulnerabilities

17,619 CVEs published in 2019.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2019-5076HIGH8.8An exploitable out-of-bounds write vulnerability exists in the igcore19d.dll PNG header-parser of the Accusoft ImageGear...
CVE-2019-19543HIGH7.8In the Linux kernel before 5.1.6, there is a use-after-free in serial_ir_init_module() in drivers/media/rc/serial_ir.c.
CVE-2019-9689HIGH7.5process_certificate in tls1.c in Cameron Hamilton-Rich axTLS through 2.1.5 has a Buffer Overflow via a crafted TLS certi...
CVE-2019-19458HIGH8.6SALTO ProAccess SPACE 5.4.3.0 allows Directory Traversal in the Data Export feature.
CVE-2019-19383HIGH8.8freeFTPd 1.0.8 has a Post-Authentication Buffer Overflow via a crafted SIZE command (this is exploitable even if logging...
CVE-2019-19382HIGH7.8Max Secure Anti Virus Plus 19.0.4.020 has Insecure Permissions on the installation directory. Local attackers can replac...
CVE-2019-10013HIGH7.5The asn1_signature function in asn1.c in Cameron Hamilton-Rich axTLS through 2.1.5 has a Buffer Overflow that allows rem...
CVE-2019-7366HIGH7.8Buffer overflow vulnerability in Autodesk FBX Software Development Kit version 2019.5. A user may be tricked into openin...
CVE-2019-7365HIGH7.8DLL preloading vulnerability in Autodesk Desktop Application versions 7.0.16.29 and earlier. An attacker may trick a use...
CVE-2019-4130HIGH8.8IBM Cloud Pak System 2.3 and 2.3.0.1 could allow a remote attacker to upload arbitrary files, which could allow the atta...
CVE-2019-19316HIGH7.5When using the Azure backend with a shared access signature (SAS), Terraform versions prior to 0.12.17 may transmit the ...
CVE-2019-19020HIGH7.2An issue was discovered in TitanHQ WebTitan before 5.18. In the administration web interface it is possible to upload a ...
CVE-2019-19019HIGH7.5An issue was discovered in TitanHQ WebTitan before 5.18. It contains a Remote Code Execution issue through which an atta...
CVE-2019-19017HIGH8.1An issue was discovered in TitanHQ WebTitan before 5.18. The appliance has a hard-coded root password set during install...
CVE-2019-19016HIGH7.5An issue was discovered in TitanHQ WebTitan before 5.18. Some functions, such as /history-x.php, of the administration i...
CVE-2019-19014HIGH7.8An issue was discovered in TitanHQ WebTitan before 5.18. It has a sudoers file that enables low-privilege users to execu...
CVE-2019-12393HIGH7.5Anviz access control devices are vulnerable to replay attacks which could allow attackers to intercept and replay open d...
CVE-2019-12391HIGH7.5The Anviz Management System for access control has insufficient logging for device events such as door open requests.
CVE-2019-12389HIGH7.5Anviz access control devices expose credentials (names and passwords) by allowing remote attackers to query this informa...
CVE-2019-12388HIGH7.5Anviz access control devices perform cleartext transmission of sensitive information (passwords/pins and names) when rep...
CVE-2019-15628HIGH7.8Trend Micro Security (Consumer) 2020 (v16.0.1221 and below) is affected by a DLL hijacking vulnerability that could allo...
CVE-2019-19490HIGH7.3LiteManager 4.5.0 has weak permissions (Everyone: Full Control) in the "LiteManagerFree - Server" folder, as demonstrate...
CVE-2019-19469HIGH8.8In Zmanda Management Console 3.3.9, ZMC_Admin_Advanced?form=adminTasks&action=Apply&command= allows CSRF, as demonstrate...
CVE-2019-19468HIGH7.8Free Photo Viewer 1.3 allows remote attackers to execute arbitrary code via a crafted BMP and/or TIFF file that triggers...
CVE-2019-19396HIGH7.5illumos, as used in OmniOS Community Edition before r151030y, allows a kernel crash via an application with multiple thr...

Check if your code is affected by 2019 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now