2019 CVE Vulnerabilities
17,619 CVEs published in 2019.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2019-3466 | HIGH | 7.8 | 0.5% | Nov 20, 2019 | The pg_ctlcluster script in postgresql-common in versions prior to 210 didn't drop privileges when creating socket/stati... |
| CVE-2019-4561 | HIGH | 8.8 | 3.5% | Nov 20, 2019 | IBM Security Identity Manager 6.0.0 could allow a remote attacker to execute arbitrary code on the system, caused by the... |
| CVE-2019-5542 | HIGH | 7.7 | 0.9% | Nov 20, 2019 | VMware Workstation (15.x before 15.5.1) and Fusion (11.x before 11.5.1) contain a denial-of-service vulnerability in the... |
| CVE-2019-5540 | HIGH | 7.7 | 1.2% | Nov 20, 2019 | VMware Workstation (15.x before 15.5.1) and Fusion (11.x before 11.5.1) contain an information disclosure vulnerability ... |
| CVE-2019-16200 | HIGH | 7.5 | 1.5% | Nov 20, 2019 | GNU Serveez through 0.2.2 has an Information Leak. An attacker may send an HTTP POST request to the /cgi-bin/reader URI.... |
| CVE-2019-6191 | HIGH | 7.8 | 0.3% | Nov 20, 2019 | A potential vulnerability in the discontinued LenovoPaper software version 1.0.0.22 may allow local privilege escalation... |
| CVE-2019-6189 | HIGH | 7.8 | 0.3% | Nov 20, 2019 | A potential vulnerability was reported in Lenovo System Interface Foundation versions before v1.1.18.3 that could allow ... |
| CVE-2019-6186 | HIGH | 8.8 | 1.5% | Nov 20, 2019 | A potential vulnerability was reported in Lenovo System Interface Foundation versions before v1.1.18.3 that could allow ... |
| CVE-2019-6184 | HIGH | 7.8 | 0.4% | Nov 20, 2019 | A potential vulnerability in the discontinued Customer Engagement Service (CCSDK) software version 2.0.21.1 may allow lo... |
| CVE-2019-6176 | HIGH | 7.5 | 1.0% | Nov 20, 2019 | A potential vulnerability reported in ThinkPad USB-C Dock Firmware version 3.7.2 may allow a denial of service. |
| CVE-2019-12421 | HIGH | 8.8 | 1.8% | Nov 19, 2019 | When using an authentication mechanism other than PKI, when the user clicks Log Out in NiFi versions 1.0.0 to 1.9.2, NiF... |
| CVE-2019-10768 | HIGH | 7.5 | 2.2% | Nov 19, 2019 | In AngularJS before 1.7.9 the function `merge()` could be tricked into adding or modifying properties of `Object.prototy... |
| CVE-2019-11289 | HIGH | 8.6 | 1.5% | Nov 19, 2019 | Cloud Foundry Routing, all versions before 0.193.0, does not properly validate nonce input. A remote unauthenticated mal... |
| CVE-2019-18934 | HIGH | 7.3 | 3.2% | Nov 19, 2019 | Unbound 1.6.4 through 1.9.4 contain a vulnerability in the ipsec module that can cause shell code execution after receiv... |
| CVE-2019-16861 | HIGH | 7.3 | 0.4% | Nov 19, 2019 | Code42 server through 7.0.2 for Windows has an Untrusted Search Path. In certain situations, a non-administrative attack... |
| CVE-2019-16860 | HIGH | 7.3 | 0.4% | Nov 19, 2019 | Code42 app through version 7.0.2 for Windows has an Untrusted Search Path. In certain situations, a non-administrative a... |
| CVE-2019-12422 | HIGH | 7.5 | 9.1% | Nov 18, 2019 | Apache Shiro before 1.4.2, when using the default "remember me" configuration, cookies could be susceptible to a padding... |
| CVE-2019-19117 | HIGH | 8.8 | 5.0% | Nov 18, 2019 | /usr/lib/lua/luci/controller/admin/autoupgrade.lua on PHICOMM K2(PSG1218) V22.5.9.163 devices allows remote authenticate... |
| CVE-2019-10764 | HIGH | 7.4 | 1.1% | Nov 18, 2019 | In elliptic-php versions priot to 1.0.6, Timing attacks might be possible which can result in practical recovery of the ... |
| CVE-2019-18215 | HIGH | 7.8 | 0.6% | Nov 18, 2019 | An issue was discovered in signmgr.dll 6.5.0.819 in Comodo Internet Security through 12.0. A DLL Preloading vulnerabilit... |
| CVE-2019-3424 | HIGH | 8.2 | 0.9% | Nov 18, 2019 | authentication issues vulnerability, which exists in V2.1.14 and below versions of C520V21 smart camera devices. An atta... |
| CVE-2019-10172 | HIGH | 7.5 | 17.0% | Nov 18, 2019 | A flaw was found in org.codehaus.jackson:jackson-mapper-asl:1.9.x libraries. XML external entity vulnerabilities similar... |
| CVE-2019-14467 | HIGH | 7.8 | 1.8% | Nov 18, 2019 | The Social Photo Gallery plugin 1.0 for WordPress allows Remote Code Execution by creating an album and attaching a mali... |
| CVE-2019-19079 | HIGH | 7.5 | 2.9% | Nov 18, 2019 | A memory leak in the qrtr_tun_write_iter() function in net/qrtr/tun.c in the Linux kernel before 5.3 allows attackers to... |
| CVE-2019-19078 | HIGH | 7.5 | 6.6% | Nov 18, 2019 | A memory leak in the ath10k_usb_hif_tx_sg() function in drivers/net/wireless/ath/ath10k/usb.c in the Linux kernel throug... |
Check if your code is affected by 2019 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now