2019 CVE Vulnerabilities

17,624 CVEs published in 2019.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2019-5109HIGH8.8Exploitable SQL injection vulnerabilities exists in the authenticated portion of Forma LMS 2.2.1. Specially crafted web ...
CVE-2019-5097HIGH7.5A denial-of-service vulnerability exists in the processing of multi-part/form-data requests in the base GoAhead web serv...
CVE-2019-5083HIGH8.8An exploitable out-of-bounds write vulnerability exists in the igcore19d.dll TIFdecodethunderscan function of Accusoft I...
CVE-2019-5076HIGH8.8An exploitable out-of-bounds write vulnerability exists in the igcore19d.dll PNG header-parser of the Accusoft ImageGear...
CVE-2019-19543HIGH7.8In the Linux kernel before 5.1.6, there is a use-after-free in serial_ir_init_module() in drivers/media/rc/serial_ir.c.
CVE-2019-9689HIGH7.5process_certificate in tls1.c in Cameron Hamilton-Rich axTLS through 2.1.5 has a Buffer Overflow via a crafted TLS certi...
CVE-2019-19458HIGH8.6SALTO ProAccess SPACE 5.4.3.0 allows Directory Traversal in the Data Export feature.
CVE-2019-19383HIGH8.8freeFTPd 1.0.8 has a Post-Authentication Buffer Overflow via a crafted SIZE command (this is exploitable even if logging...
CVE-2019-19382HIGH7.8Max Secure Anti Virus Plus 19.0.4.020 has Insecure Permissions on the installation directory. Local attackers can replac...
CVE-2019-10013HIGH7.5The asn1_signature function in asn1.c in Cameron Hamilton-Rich axTLS through 2.1.5 has a Buffer Overflow that allows rem...
CVE-2019-7366HIGH7.8Buffer overflow vulnerability in Autodesk FBX Software Development Kit version 2019.5. A user may be tricked into openin...
CVE-2019-7365HIGH7.8DLL preloading vulnerability in Autodesk Desktop Application versions 7.0.16.29 and earlier. An attacker may trick a use...
CVE-2019-4130HIGH8.8IBM Cloud Pak System 2.3 and 2.3.0.1 could allow a remote attacker to upload arbitrary files, which could allow the atta...
CVE-2019-19316HIGH7.5When using the Azure backend with a shared access signature (SAS), Terraform versions prior to 0.12.17 may transmit the ...
CVE-2019-19020HIGH7.2An issue was discovered in TitanHQ WebTitan before 5.18. In the administration web interface it is possible to upload a ...
CVE-2019-19019HIGH7.5An issue was discovered in TitanHQ WebTitan before 5.18. It contains a Remote Code Execution issue through which an atta...
CVE-2019-19017HIGH8.1An issue was discovered in TitanHQ WebTitan before 5.18. The appliance has a hard-coded root password set during install...
CVE-2019-19016HIGH7.5An issue was discovered in TitanHQ WebTitan before 5.18. Some functions, such as /history-x.php, of the administration i...
CVE-2019-19014HIGH7.8An issue was discovered in TitanHQ WebTitan before 5.18. It has a sudoers file that enables low-privilege users to execu...
CVE-2019-12393HIGH7.5Anviz access control devices are vulnerable to replay attacks which could allow attackers to intercept and replay open d...
CVE-2019-12391HIGH7.5The Anviz Management System for access control has insufficient logging for device events such as door open requests.
CVE-2019-12389HIGH7.5Anviz access control devices expose credentials (names and passwords) by allowing remote attackers to query this informa...
CVE-2019-12388HIGH7.5Anviz access control devices perform cleartext transmission of sensitive information (passwords/pins and names) when rep...
CVE-2019-15628HIGH7.8Trend Micro Security (Consumer) 2020 (v16.0.1221 and below) is affected by a DLL hijacking vulnerability that could allo...
CVE-2019-19490HIGH7.3LiteManager 4.5.0 has weak permissions (Everyone: Full Control) in the "LiteManagerFree - Server" folder, as demonstrate...

Check if your code is affected by 2019 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now