2019 CVE Vulnerabilities

17,619 CVEs published in 2019.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2019-3466HIGH7.8The pg_ctlcluster script in postgresql-common in versions prior to 210 didn't drop privileges when creating socket/stati...
CVE-2019-4561HIGH8.8IBM Security Identity Manager 6.0.0 could allow a remote attacker to execute arbitrary code on the system, caused by the...
CVE-2019-5542HIGH7.7VMware Workstation (15.x before 15.5.1) and Fusion (11.x before 11.5.1) contain a denial-of-service vulnerability in the...
CVE-2019-5540HIGH7.7VMware Workstation (15.x before 15.5.1) and Fusion (11.x before 11.5.1) contain an information disclosure vulnerability ...
CVE-2019-16200HIGH7.5GNU Serveez through 0.2.2 has an Information Leak. An attacker may send an HTTP POST request to the /cgi-bin/reader URI....
CVE-2019-6191HIGH7.8A potential vulnerability in the discontinued LenovoPaper software version 1.0.0.22 may allow local privilege escalation...
CVE-2019-6189HIGH7.8A potential vulnerability was reported in Lenovo System Interface Foundation versions before v1.1.18.3 that could allow ...
CVE-2019-6186HIGH8.8A potential vulnerability was reported in Lenovo System Interface Foundation versions before v1.1.18.3 that could allow ...
CVE-2019-6184HIGH7.8A potential vulnerability in the discontinued Customer Engagement Service (CCSDK) software version 2.0.21.1 may allow lo...
CVE-2019-6176HIGH7.5A potential vulnerability reported in ThinkPad USB-C Dock Firmware version 3.7.2 may allow a denial of service.
CVE-2019-12421HIGH8.8When using an authentication mechanism other than PKI, when the user clicks Log Out in NiFi versions 1.0.0 to 1.9.2, NiF...
CVE-2019-10768HIGH7.5In AngularJS before 1.7.9 the function `merge()` could be tricked into adding or modifying properties of `Object.prototy...
CVE-2019-11289HIGH8.6Cloud Foundry Routing, all versions before 0.193.0, does not properly validate nonce input. A remote unauthenticated mal...
CVE-2019-18934HIGH7.3Unbound 1.6.4 through 1.9.4 contain a vulnerability in the ipsec module that can cause shell code execution after receiv...
CVE-2019-16861HIGH7.3Code42 server through 7.0.2 for Windows has an Untrusted Search Path. In certain situations, a non-administrative attack...
CVE-2019-16860HIGH7.3Code42 app through version 7.0.2 for Windows has an Untrusted Search Path. In certain situations, a non-administrative a...
CVE-2019-12422HIGH7.5Apache Shiro before 1.4.2, when using the default "remember me" configuration, cookies could be susceptible to a padding...
CVE-2019-19117HIGH8.8/usr/lib/lua/luci/controller/admin/autoupgrade.lua on PHICOMM K2(PSG1218) V22.5.9.163 devices allows remote authenticate...
CVE-2019-10764HIGH7.4In elliptic-php versions priot to 1.0.6, Timing attacks might be possible which can result in practical recovery of the ...
CVE-2019-18215HIGH7.8An issue was discovered in signmgr.dll 6.5.0.819 in Comodo Internet Security through 12.0. A DLL Preloading vulnerabilit...
CVE-2019-3424HIGH8.2authentication issues vulnerability, which exists in V2.1.14 and below versions of C520V21 smart camera devices. An atta...
CVE-2019-10172HIGH7.5A flaw was found in org.codehaus.jackson:jackson-mapper-asl:1.9.x libraries. XML external entity vulnerabilities similar...
CVE-2019-14467HIGH7.8The Social Photo Gallery plugin 1.0 for WordPress allows Remote Code Execution by creating an album and attaching a mali...
CVE-2019-19079HIGH7.5A memory leak in the qrtr_tun_write_iter() function in net/qrtr/tun.c in the Linux kernel before 5.3 allows attackers to...
CVE-2019-19078HIGH7.5A memory leak in the ath10k_usb_hif_tx_sg() function in drivers/net/wireless/ath/ath10k/usb.c in the Linux kernel throug...

Check if your code is affected by 2019 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now