2019 CVE Vulnerabilities
17,619 CVEs published in 2019.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2019-5072 | HIGH | 7.8 | 1.8% | Nov 21, 2019 | An exploitable command injection vulnerability exists in the /goform/WanParameterSetting functionality of Tenda AC9 Rout... |
| CVE-2019-5071 | HIGH | 7.8 | 1.7% | Nov 21, 2019 | An exploitable command injection vulnerability exists in the /goform/WanParameterSetting functionality of Tenda AC9 Rout... |
| CVE-2019-10767 | HIGH | 7.5 | 2.2% | Nov 21, 2019 | An attacker can include file contents from outside the `/adapter/xxx/` directory, where `xxx` is the name of an existent... |
| CVE-2019-5087 | HIGH | 8.8 | 3.6% | Nov 21, 2019 | An exploitable integer overflow vulnerability exists in the flattenIncrementally function in the xcf2png and xcf2pnm bin... |
| CVE-2019-5086 | HIGH | 8.8 | 3.2% | Nov 21, 2019 | An exploitable integer overflow vulnerability exists in the flattenIncrementally function in the xcf2png and xcf2pnm bin... |
| CVE-2019-17650 | HIGH | 7.8 | 0.4% | Nov 21, 2019 | An Improper Neutralization of Special Elements used in a Command vulnerability in one of FortiClient for Mac OS root pro... |
| CVE-2019-17272 | HIGH | 7.2 | 1.3% | Nov 21, 2019 | All versions of ONTAP Select Deploy administration utility are susceptible to a vulnerability which when successfully ex... |
| CVE-2019-2339 | HIGH | 7.8 | 0.2% | Nov 21, 2019 | Out of bound access due to lack of check of whiltelist array size while reading the image elf segments. in Snapdragon Au... |
| CVE-2019-2335 | HIGH | 7.5 | 0.6% | Nov 21, 2019 | While processing Attach Reject message, Valid exit condition is not met resulting into an infinite loop in Snapdragon Au... |
| CVE-2019-2329 | HIGH | 7.8 | 0.2% | Nov 21, 2019 | Use after free issue in cleanup routine due to missing pointer sanitization for a failed start of a trusted application.... |
| CVE-2019-2315 | HIGH | 7.8 | 0.2% | Nov 21, 2019 | While invoking the API to copy from fd or local buffer to the secure buffer, Parameters being populated are from non sec... |
| CVE-2019-2297 | HIGH | 7.8 | 0.2% | Nov 21, 2019 | Buffer overflow can occur while processing non-standard NAN message from user space. in Snapdragon Auto, Snapdragon Cons... |
| CVE-2019-2266 | HIGH | 7.8 | 0.2% | Nov 21, 2019 | Possible double free issue in kernel while handling the camera sensor and its sub modules power sequence in Snapdragon A... |
| CVE-2019-2251 | HIGH | 7.8 | 0.2% | Nov 21, 2019 | If a bitmap file is loaded from any un-authenticated source, there is a possibility that the bitmap can potentially caus... |
| CVE-2019-18958 | HIGH | 7.8 | 0.5% | Nov 21, 2019 | Nitro Pro before 13.2 creates a debug.log file in the directory where a .pdf file is located, if the .pdf document was p... |
| CVE-2019-17421 | HIGH | 7.8 | 0.6% | Nov 21, 2019 | Incorrect file permissions on the packaged Nipper executable file in Zoho ManageEngine OpManager 12.4.072 and Firewall A... |
| CVE-2019-16548 | HIGH | 8.8 | 0.7% | Nov 21, 2019 | A cross-site request forgery vulnerability in Jenkins Google Compute Engine Plugin 4.1.1 and earlier in ComputeEngineClo... |
| CVE-2019-16544 | HIGH | 8.8 | 0.8% | Nov 21, 2019 | Jenkins QMetry for JIRA - Test Management Plugin 1.12 and earlier stores credentials unencrypted in job config.xml files... |
| CVE-2019-16538 | HIGH | 8.8 | 1.4% | Nov 21, 2019 | A sandbox bypass vulnerability in Jenkins Script Security Plugin 1.67 and earlier related to the handling of default par... |
| CVE-2019-10617 | HIGH | 7.8 | 0.2% | Nov 21, 2019 | Low privilege users can access service configuration which contains registry data that admins uses to create or delete e... |
| CVE-2019-10566 | HIGH | 7.8 | 0.2% | Nov 21, 2019 | Buffer overflow can occur in wlan module if supported rates or extended rates element length is greater than max rate se... |
| CVE-2019-10563 | HIGH | 7.8 | 0.2% | Nov 21, 2019 | Buffer over-read can occur in fast message handler due to improper input validation while processing a message from firm... |
| CVE-2019-10503 | HIGH | 7.8 | 0.2% | Nov 21, 2019 | Out-of-bounds access can occur in camera driver due to improper validation of array index in Snapdragon Auto, Snapdragon... |
| CVE-2019-10486 | HIGH | 7 | 0.1% | Nov 21, 2019 | Race condition due to the lack of resource lock which will be concurrently modified in the memcpy statement leads to out... |
| CVE-2019-6852 | HIGH | 7.5 | 1.4% | Nov 20, 2019 | A CWE-200: Information Exposure vulnerability exists in Modicon Controllers (M340 CPUs, M340 communication modules, Prem... |
Check if your code is affected by 2019 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now