2019 CVE Vulnerabilities

17,624 CVEs published in 2019.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2019-9584——eQ-3 Homematic AddOn 'CloudMatic' on CCU2 and CCU3 allows uncontrolled admin access, resulting in the ability to obtain ...
CVE-2019-1258——An elevation of privilege vulnerability exists in Azure Active Directory Authentication Library On-Behalf-Of flow, in th...
CVE-2019-1229——An elevation of privilege vulnerability exists in Dynamics On-Premise v9. An attacker who successfully exploited the vul...
CVE-2019-1218——A spoofing vulnerability exists in the way Microsoft Outlook iOS software parses specifically crafted email messages. An...
CVE-2019-1211——An elevation of privilege vulnerability exists in Git for Visual Studio when it improperly parses configuration files. A...
CVE-2019-1204——An elevation of privilege vulnerability exists when Microsoft Outlook initiates processing of incoming messages without ...
CVE-2019-1203——A cross-site-scripting (XSS) vulnerability exists when Microsoft SharePoint Server does not properly sanitize a speciall...
CVE-2019-1202——An information disclosure vulnerability exists in the way Microsoft SharePoint handles session objects. An authenticated...
CVE-2019-1201——A remote code execution vulnerability exists in Microsoft Word software when it fails to properly handle objects in memo...
CVE-2019-1200——A remote code execution vulnerability exists in Microsoft Outlook software when it fails to properly handle objects in m...
CVE-2019-1199——A remote code execution vulnerability exists in Microsoft Outlook when the software fails to properly handle objects in ...
CVE-2019-1183——This information is being revised to indicate that this CVE (CVE-2019-1183) is fully mitigated by the security updates f...
CVE-2019-15058——stb_image.h (aka the stb image loader) 2.23 has a heap-based buffer over-read in stbi__tga_load, leading to Information ...
CVE-2019-14527——An issue was discovered on NETGEAR Nighthawk M1 (MR1100) devices before 12.06.03. System commands can be executed, via t...
CVE-2019-14526——An issue was discovered on NETGEAR Nighthawk M1 (MR1100) devices before 12.06.03. The web-interface Cross-Site Request F...
CVE-2019-14216——An issue was discovered in the svg-vector-icon-plugin (aka WP SVG Icons) plugin through 3.2.1 for WordPress. wp-admin/ad...
CVE-2019-12104——The web-based configuration interface of the TP-Link M7350 V3 with firmware before 190531 is affected by several post-au...
CVE-2019-12103——The web-based configuration interface of the TP-Link M7350 V3 with firmware before 190531 is affected by a pre-authentic...
CVE-2019-9582——eQ-3 Homematic CCU2 outdated base software packages allows Denial of Service. CCU2 affected versions: 2.35.16, 2.41.5, 2...
CVE-2019-15053——The "HTML Include and replace macro" plugin before 1.5.0 for Confluence Server allows a bypass of the includeScripts=fal...
CVE-2019-15050——An issue was discovered in Bento4 1.5.1.0. There is a heap-based buffer over-read in the AP4_AvccAtom class at Core/Ap4A...
CVE-2019-15049——An issue was discovered in Bento4 1.5.1.0. There is a heap-based buffer over-read in the AP4_Dec3Atom class at Core/Ap4D...
CVE-2019-15048——An issue was discovered in Bento4 1.5.1.0. There is a heap-based buffer overflow in the AP4_RtpAtom class at Core/Ap4Rtp...
CVE-2019-15047——An issue was discovered in Bento4 1.5.1.0. There is a heap-based buffer over-read in the function AP4_BitReader::SkipBit...
CVE-2019-14974——SugarCRM Enterprise 9.0.0 allows mobile/error-not-supported-platform.html?desktop_url= XSS.

Check if your code is affected by 2019 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now