2019 CVE Vulnerabilities
17,620 CVEs published in 2019.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2019-15876 | MEDIUM | 5.5 | 0.3% | Apr 28, 2020 | In FreeBSD 12.1-STABLE before r356089, 12.1-RELEASE before 12.1-RELEASE-p3, 11.3-STABLE before r356090, and 11.3-RELEASE... |
| CVE-2019-20791 | CRITICAL | 9.8 | 0.9% | Apr 28, 2020 | OpenThread before 2019-12-13 has a stack-based buffer overflow in MeshCoP::Commissioner::GeneratePskc. |
| CVE-2019-15790 | LOW | 3.3 | 0.5% | Apr 28, 2020 | Apport reads and writes information on a crashed process to /proc/pid with elevated privileges. Apport then determines w... |
| CVE-2019-5303 | MEDIUM | 5.3 | 0.3% | Apr 27, 2020 | There are two denial of service vulnerabilities on some Huawei smartphones. An attacker may send specially crafted TD-SC... |
| CVE-2019-5302 | MEDIUM | 5.3 | 0.3% | Apr 27, 2020 | There are two denial of service vulnerabilities on some Huawei smartphones. An attacker may send specially crafted TD-SC... |
| CVE-2019-15234 | HIGH | 7.5 | 1.5% | Apr 27, 2020 | SHAREit through 4.0.6.177 does not check the full message length from the received packet header (which is used to alloc... |
| CVE-2019-14941 | HIGH | 7.5 | 1.5% | Apr 27, 2020 | SHAREit through 4.0.6.177 does not check the body length from the received packet header (which is used to allocate memo... |
| CVE-2019-20002 | HIGH | 7.8 | 1.3% | Apr 27, 2020 | Formula Injection exists in the export feature in SolarWinds WebHelpDesk 12.7.1 via a value (provided by a low-privilege... |
| CVE-2019-18823 | CRITICAL | 9.8 | 2.8% | Apr 27, 2020 | HTCondor up to and including stable series 8.8.6 and development series 8.9.4 has Incorrect Access Control. It is possib... |
| CVE-2019-4729 | MEDIUM | 4.3 | 1.6% | Apr 27, 2020 | IBM Cognos Analytics 11.0 and 11.1 could allow a remote attacker to obtain sensitive information when a detailed technic... |
| CVE-2019-20790 | CRITICAL | 9.8 | 2.7% | Apr 27, 2020 | OpenDMARC through 1.3.2 and 1.4.x, when used with pypolicyd-spf 2.0.2, allows attacks that bypass SPF and DMARC authenti... |
| CVE-2019-18223 | MEDIUM | 5.4 | 0.6% | Apr 27, 2020 | ZOOM International Call Recording 6.3.1 suffers from multiple authenticated stored XSS vulnerabilities via the phoneNumb... |
| CVE-2019-20789 | MEDIUM | 4.8 | 0.7% | Apr 26, 2020 | Croogo before 3.0.7 allows XSS via the title to admin/menus/menus or admin/taxonomy/vocabularies. |
| CVE-2019-4751 | MEDIUM | 5.3 | 1.3% | Apr 24, 2020 | IBM Cloud App Management 2019.3.0 and 2019.4.0 reveals a stack trace on certain API requests which can allow an attacker... |
| CVE-2019-4750 | HIGH | 8.8 | 0.5% | Apr 24, 2020 | IBM Cloud App Management 2019.3.0 and 2019.4.0 is vulnerable to cross-site request forgery which could allow an attacker... |
| CVE-2019-15794 | MEDIUM | 6.7 | 1.2% | Apr 24, 2020 | Overlayfs in the Linux kernel and shiftfs, a non-upstream patch to the Linux kernel included in the Ubuntu 5.0 and 5.3 k... |
| CVE-2019-15793 | HIGH | 8.8 | 0.7% | Apr 24, 2020 | In shiftfs, a non-upstream patch to the Linux kernel included in the Ubuntu 5.0 and 5.3 kernel series, several locations... |
| CVE-2019-15792 | HIGH | 7.8 | 1.1% | Apr 24, 2020 | In shiftfs, a non-upstream patch to the Linux kernel included in the Ubuntu 5.0 and 5.3 kernel series, shiftfs_btrfs_ioc... |
| CVE-2019-15791 | HIGH | 7.8 | 1.3% | Apr 24, 2020 | In shiftfs, a non-upstream patch to the Linux kernel included in the Ubuntu 5.0 and 5.3 kernel series, shiftfs_btrfs_ioc... |
| CVE-2019-20788 | CRITICAL | 9.8 | 2.4% | Apr 23, 2020 | libvncclient/cursor.c in LibVNCServer through 0.9.12 has a HandleCursorShape integer overflow and heap-based buffer over... |
| CVE-2019-17101 | MEDIUM | 6.7 | 0.8% | Apr 23, 2020 | Improper Neutralization of Special Elements used in a Command ('Command Injection') vulnerability in firmware versions p... |
| CVE-2019-9183 | HIGH | 7.5 | 2.3% | Apr 23, 2020 | An issue was discovered in Contiki-NG through 4.3 and Contiki through 3.0. A buffer overflow is present due to an intege... |
| CVE-2019-8359 | CRITICAL | 9.8 | 2.1% | Apr 23, 2020 | An issue was discovered in Contiki-NG through 4.3 and Contiki through 3.0. An out of bounds write is present in the data... |
| CVE-2019-4735 | MEDIUM | 4.6 | 0.4% | Apr 23, 2020 | IBM MaaS360 3.96.62 for iOS could allow an attacker with physical access to the device to obtain sensitive information f... |
| CVE-2019-4668 | MEDIUM | 5.5 | 0.3% | Apr 23, 2020 | IBM UrbanCode Deploy (UCD) 7.0.4.0 stores user credentials in plain in clear text which can be read by a local user. IBM... |
Check if your code is affected by 2019 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now