2019 CVE Vulnerabilities

17,619 CVEs published in 2019.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2019-11156HIGH7.8Logic errors in Intel(R) PROSet/Wireless WiFi Software before version 21.40 may allow an authenticated user to potential...
CVE-2019-11155HIGH7.1Improper directory permissions in Intel(R) PROSet/Wireless WiFi Software before version 21.40 may allow an authenticated...
CVE-2019-11154HIGH7.1Improper directory permissions in Intel(R) PROSet/Wireless WiFi Software before version 21.40 may allow an authenticated...
CVE-2019-11153HIGH7.8Memory corruption issues in Intel(R) PROSet/Wireless WiFi Software extension DLL before version 21.40 may allow an authe...
CVE-2019-11152HIGH8.8Memory corruption issues in Intel(R) WIFI Drivers before version 21.40 may allow a privileged user to potentially enable...
CVE-2019-11151HIGH7.8Memory corruption issues in Intel(R) WIFI Drivers before version 21.40 may allow a privileged user to potentially enable...
CVE-2019-11137HIGH8.2Insufficient input validation in system firmware for Intel(R) Xeon(R) Scalable Processors, Intel(R) Xeon(R) Processors D...
CVE-2019-8240HIGH7.5Adobe Bridge CC versions 9.1 and earlier have a memory corruption vulnerability. Successful exploitation could lead to i...
CVE-2019-8239HIGH7.5Adobe Bridge CC versions 9.1 and earlier have a memory corruption vulnerability. Successful exploitation could lead to i...
CVE-2019-7962HIGH7.8Adobe Illustrator CC versions 23.1 and earlier have an insecure library loading (dll hijacking) vulnerability. Successfu...
CVE-2019-7960HIGH7.8Adobe Animate CC versions 19.2.1 and earlier have an insecure library loading (dll hijacking) vulnerability. Successful ...
CVE-2019-18647HIGH7.2The Untangle NG firewall 14.2.0 is vulnerable to an authenticated command injection when logged in as an admin user.
CVE-2019-18646HIGH7.2The Untangle NG firewall 14.2.0 is vulnerable to authenticated inline-query SQL injection within the timeDataDynamicColu...
CVE-2019-18895HIGH7.8Scanguard through 2019-11-12 on Windows has Insecure Permissions for the installation directory, leading to privilege es...
CVE-2019-18949HIGH7.5SnowHaze before 2.6.6 is sometimes too late to honor a per-site JavaScript blocking setting, which leads to unintended J...
CVE-2019-3663HIGH7.8Unprotected Storage of Credentials vulnerability in McAfee Advanced Threat Defense (ATD) prior to 4.8 allows local attac...
CVE-2019-3661HIGH8.8Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') in McAfee Advanced Threat Defense (...
CVE-2019-3660HIGH8.8Improper Neutralization of HTTP requests in McAfee Advanced Threat Defense (ATD) prior to 4.8 allows remote authenticate...
CVE-2019-3651HIGH8.8Information Disclosure vulnerability in McAfee Advanced Threat Defense (ATD prior to 4.8 allows remote authenticated att...
CVE-2019-18951HIGH7.5SibSoft Xfilesharing through 2.5.1 allows op=page&tmpl=../ directory traversal to read arbitrary files.
CVE-2019-0396HIGH7.1SAP BusinessObjects Business Intelligence Platform (Web Intelligence HTML interface), corrected in versions 4.1 and 4.2,...
CVE-2019-0389HIGH8.8An administrator of SAP NetWeaver Application Server Java (J2EE-Framework), (corrected in versions 7.1, 7.2, 7.3, 7.31, ...
CVE-2019-2210HIGH7.8In load_logging_config of qmi_vs_service.cc, there is a possible out of bounds write due to a heap buffer overflow. This...
CVE-2019-18884HIGH8.8index.php/team_members/add_team_member in RISE Ultimate Project Manager 2.3 has CSRF for adding authorized users.
CVE-2019-18844HIGH7.5The Device Model in ACRN before 2019w25.5-140000p relies on assert calls in devicemodel/hw/pci/core.c and devicemodel/in...

Check if your code is affected by 2019 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now