2019 CVE Vulnerabilities
17,619 CVEs published in 2019.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2019-1229 | — | — | 3.5% | Aug 14, 2019 | An elevation of privilege vulnerability exists in Dynamics On-Premise v9. An attacker who successfully exploited the vul... |
| CVE-2019-1218 | — | — | 3.9% | Aug 14, 2019 | A spoofing vulnerability exists in the way Microsoft Outlook iOS software parses specifically crafted email messages. An... |
| CVE-2019-1211 | — | — | 1.7% | Aug 14, 2019 | An elevation of privilege vulnerability exists in Git for Visual Studio when it improperly parses configuration files. A... |
| CVE-2019-1204 | — | — | 4.4% | Aug 14, 2019 | An elevation of privilege vulnerability exists when Microsoft Outlook initiates processing of incoming messages without ... |
| CVE-2019-1203 | — | — | 1.7% | Aug 14, 2019 | A cross-site-scripting (XSS) vulnerability exists when Microsoft SharePoint Server does not properly sanitize a speciall... |
| CVE-2019-1202 | — | — | 1.6% | Aug 14, 2019 | An information disclosure vulnerability exists in the way Microsoft SharePoint handles session objects. An authenticated... |
| CVE-2019-1201 | — | — | 4.9% | Aug 14, 2019 | A remote code execution vulnerability exists in Microsoft Word software when it fails to properly handle objects in memo... |
| CVE-2019-1200 | — | — | 4.6% | Aug 14, 2019 | A remote code execution vulnerability exists in Microsoft Outlook software when it fails to properly handle objects in m... |
| CVE-2019-1199 | — | — | 4.6% | Aug 14, 2019 | A remote code execution vulnerability exists in Microsoft Outlook when the software fails to properly handle objects in ... |
| CVE-2019-1183 | — | — | 4.8% | Aug 14, 2019 | This information is being revised to indicate that this CVE (CVE-2019-1183) is fully mitigated by the security updates f... |
| CVE-2019-15058 | — | — | 2.8% | Aug 14, 2019 | stb_image.h (aka the stb image loader) 2.23 has a heap-based buffer over-read in stbi__tga_load, leading to Information ... |
| CVE-2019-14527 | — | — | 2.7% | Aug 14, 2019 | An issue was discovered on NETGEAR Nighthawk M1 (MR1100) devices before 12.06.03. System commands can be executed, via t... |
| CVE-2019-14526 | — | — | 0.7% | Aug 14, 2019 | An issue was discovered on NETGEAR Nighthawk M1 (MR1100) devices before 12.06.03. The web-interface Cross-Site Request F... |
| CVE-2019-14216 | — | — | 0.8% | Aug 14, 2019 | An issue was discovered in the svg-vector-icon-plugin (aka WP SVG Icons) plugin through 3.2.1 for WordPress. wp-admin/ad... |
| CVE-2019-12104 | — | — | 4.7% | Aug 14, 2019 | The web-based configuration interface of the TP-Link M7350 V3 with firmware before 190531 is affected by several post-au... |
| CVE-2019-12103 | — | — | 3.4% | Aug 14, 2019 | The web-based configuration interface of the TP-Link M7350 V3 with firmware before 190531 is affected by a pre-authentic... |
| CVE-2019-9582 | — | — | 2.4% | Aug 14, 2019 | eQ-3 Homematic CCU2 outdated base software packages allows Denial of Service. CCU2 affected versions: 2.35.16, 2.41.5, 2... |
| CVE-2019-15053 | — | — | 1.3% | Aug 14, 2019 | The "HTML Include and replace macro" plugin before 1.5.0 for Confluence Server allows a bypass of the includeScripts=fal... |
| CVE-2019-15050 | — | — | 1.5% | Aug 14, 2019 | An issue was discovered in Bento4 1.5.1.0. There is a heap-based buffer over-read in the AP4_AvccAtom class at Core/Ap4A... |
| CVE-2019-15049 | — | — | 1.5% | Aug 14, 2019 | An issue was discovered in Bento4 1.5.1.0. There is a heap-based buffer over-read in the AP4_Dec3Atom class at Core/Ap4D... |
| CVE-2019-15048 | — | — | 1.4% | Aug 14, 2019 | An issue was discovered in Bento4 1.5.1.0. There is a heap-based buffer overflow in the AP4_RtpAtom class at Core/Ap4Rtp... |
| CVE-2019-15047 | — | — | 1.5% | Aug 14, 2019 | An issue was discovered in Bento4 1.5.1.0. There is a heap-based buffer over-read in the function AP4_BitReader::SkipBit... |
| CVE-2019-14974 | — | — | 31.0% | Aug 14, 2019 | SugarCRM Enterprise 9.0.0 allows mobile/error-not-supported-platform.html?desktop_url= XSS. |
| CVE-2019-11652 | — | — | 2.1% | Aug 14, 2019 | A potential authorization bypass issue was found in Micro Focus Self Service Password Reset (SSPR) versions prior to: 4.... |
| CVE-2019-7961 | — | — | 3.0% | Aug 14, 2019 | Adobe Prelude CC versions 8.1 and earlier have an insecure library loading (dll hijacking) vulnerability. Successful exp... |
Check if your code is affected by 2019 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now