2019 CVE Vulnerabilities
17,619 CVEs published in 2019.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2019-2209 | MEDIUM | 5.5 | 0.1% | Nov 13, 2019 | In BTA_DmPinReply of bta_dm_api.cc, there is a possible out of bounds read due to an incorrect bounds check. This could ... |
| CVE-2019-2199 | MEDIUM | 6.7 | 0.2% | Nov 13, 2019 | In createSessionInternal of PackageInstallerService.java, there is a possible permissions bypass. This could lead to loc... |
| CVE-2019-2198 | MEDIUM | 5.5 | 0.4% | Nov 13, 2019 | In Download Provider, there is a possible SQL injection vulnerability. This could lead to local information disclosure w... |
| CVE-2019-2197 | MEDIUM | 5.5 | 0.2% | Nov 13, 2019 | In processPhonebookAccess of CachedBluetoothDevice.java, there is a possible permission bypass due to an insecure defaul... |
| CVE-2019-2196 | MEDIUM | 5.5 | 0.4% | Nov 13, 2019 | In Download Provider, there is possible SQL injection. This could lead to local information disclosure with no additiona... |
| CVE-2019-16949 | MEDIUM | 6.5 | 0.8% | Nov 13, 2019 | An issue was discovered in Enghouse Web Chat 6.1.300.31 and 6.2.284.34. A user is allowed to send an archive of their ch... |
| CVE-2019-5293 | MEDIUM | 6.5 | 0.8% | Nov 13, 2019 | Some Huawei products have a memory leak vulnerability when handling some messages. A remote attacker with operation priv... |
| CVE-2019-17524 | MEDIUM | 5.4 | 0.8% | Nov 13, 2019 | An XSS vulnerability on Technicolor TC7300 STFA.51.20 devices allows remote attackers to inject arbitrary web script via... |
| CVE-2019-17523 | MEDIUM | 5.4 | 0.6% | Nov 13, 2019 | An XSS vulnerability on Technicolor TC7300 STFA.51.20 devices allows remote attackers to inject arbitrary web script via... |
| CVE-2019-5279 | MEDIUM | 5.5 | 0.5% | Nov 13, 2019 | Huawei smart phones Emily-L29C with Versions earlier than 9.1.0.311(C10E2R1P13T8), Versions earlier than 9.1.0.311(C461E... |
| CVE-2019-3641 | MEDIUM | 4.5 | 0.7% | Nov 13, 2019 | Abuse of Authorization vulnerability in APIs exposed by TIE server in McAfee Threat Intelligence Exchange Server (TIE Se... |
| CVE-2019-3648 | MEDIUM | 6.7 | 0.7% | Nov 13, 2019 | A Privilege Escalation vulnerability in the Microsoft Windows client in McAfee Total Protection 16.0.R22 and earlier all... |
| CVE-2019-5246 | MEDIUM | 6.2 | 0.2% | Nov 13, 2019 | Smartphones with software of ELLE-AL00B 9.1.0.109(C00E106R1P21), 9.1.0.113(C00E110R1P21), 9.1.0.125(C00E120R1P21), 9.1.0... |
| CVE-2019-5231 | MEDIUM | 4.6 | 0.2% | Nov 13, 2019 | P30 smartphones with versions earlier than ELLE-AL00B 9.1.0.186(C00E180R2P1) have an improper authorization vulnerabilit... |
| CVE-2019-5230 | MEDIUM | 5.5 | 0.5% | Nov 13, 2019 | P20 Pro, P20, Mate RS smartphones with versions earlier than Charlotte-AL00A 9.1.0.321(C00E320R1P1T8), versions earlier ... |
| CVE-2019-5229 | MEDIUM | 6.2 | 0.2% | Nov 12, 2019 | P30 smartphones with versions earlier than ELLE-AL00B 9.1.0.193(C00E190R2P1) have an insufficient verification vulnerabi... |
| CVE-2019-6172 | MEDIUM | 6.4 | 0.3% | Nov 12, 2019 | A potential vulnerability in the SMI callback function used in Legacy USB driver using passed parameter without sufficie... |
| CVE-2019-6170 | MEDIUM | 6.4 | 0.4% | Nov 12, 2019 | A potential vulnerability in the SMI callback function used in the Legacy USB driver using boot services structure in ru... |
| CVE-2019-5695 | MEDIUM | 6.5 | 0.9% | Nov 12, 2019 | NVIDIA GeForce Experience (prior to 3.20.1) and Windows GPU Display Driver (all versions) contains a vulnerability in th... |
| CVE-2019-17332 | MEDIUM | 5.4 | 0.7% | Nov 12, 2019 | The Digital Asset Manager Web Interface component of TIBCO Software Inc.'s TIBCO EBX Add-ons contains a vulnerability th... |
| CVE-2019-17331 | MEDIUM | 5.4 | 0.6% | Nov 12, 2019 | The Data Exchange Web Interface component of TIBCO Software Inc.'s TIBCO EBX Add-ons contains a vulnerability that theor... |
| CVE-2019-1447 | MEDIUM | 5.4 | 0.8% | Nov 12, 2019 | A spoofing vulnerability exists when Office Online does not validate origin in cross-origin communications handlers corr... |
| CVE-2019-1446 | MEDIUM | 5.5 | 8.4% | Nov 12, 2019 | An information disclosure vulnerability exists when Microsoft Excel improperly discloses the contents of its memory, aka... |
| CVE-2019-1445 | MEDIUM | 5.4 | 0.8% | Nov 12, 2019 | A spoofing vulnerability exists when Office Online does not validate origin in cross-origin communications handlers corr... |
| CVE-2019-1443 | MEDIUM | 6.5 | 5.4% | Nov 12, 2019 | An information disclosure vulnerability exists in Microsoft SharePoint when an attacker uploads a specially crafted file... |
Check if your code is affected by 2019 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now