2019 CVE Vulnerabilities
17,624 CVEs published in 2019.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2019-2210 | HIGH | 7.8 | 0.2% | Nov 13, 2019 | In load_logging_config of qmi_vs_service.cc, there is a possible out of bounds write due to a heap buffer overflow. This... |
| CVE-2019-18884 | HIGH | 8.8 | 0.7% | Nov 13, 2019 | index.php/team_members/add_team_member in RISE Ultimate Project Manager 2.3 has CSRF for adding authorized users. |
| CVE-2019-18844 | HIGH | 7.5 | 1.7% | Nov 13, 2019 | The Device Model in ACRN before 2019w25.5-140000p relies on assert calls in devicemodel/hw/pci/core.c and devicemodel/in... |
| CVE-2019-18837 | HIGH | 8.6 | 1.4% | Nov 13, 2019 | An issue was discovered in crun before 0.10.5. With a crafted image, it doesn't correctly check whether a target is a sy... |
| CVE-2019-2214 | HIGH | 7.8 | 0.3% | Nov 13, 2019 | In binder_transaction of binder.c, there is a possible out of bounds write due to a missing bounds check. This could lea... |
| CVE-2019-2213 | HIGH | 7.4 | 0.1% | Nov 13, 2019 | In binder_free_transaction of binder.c, there is a possible use-after-free due to a race condition. This could lead to l... |
| CVE-2019-2211 | HIGH | 7.5 | 0.7% | Nov 13, 2019 | In createProjectionMapForQuery of TvProvider.java, there is possible SQL injection. This could lead to local information... |
| CVE-2019-2208 | HIGH | 7.5 | 1.0% | Nov 13, 2019 | In PromiseBuiltinsAssembler::NewPromiseCapability of builtins-promise.cc, there is a possible out of bounds read in v8 J... |
| CVE-2019-2207 | HIGH | 7.8 | 0.2% | Nov 13, 2019 | In nfa_hci_handle_admin_gate_rsp of nfa_hci_act.cc, there is a possible out of bound write due to missing bounds checks.... |
| CVE-2019-2206 | HIGH | 8.8 | 1.2% | Nov 13, 2019 | In rw_i93_sm_set_read_only of rw_i93.cc, there is a possible out of bounds write due to a missing bounds check. This cou... |
| CVE-2019-2203 | HIGH | 7.8 | 0.2% | Nov 13, 2019 | In CryptoPlugin::decrypt of CryptoPlugin.cpp, there is a possible out of bounds write due to a heap buffer overflow. Thi... |
| CVE-2019-2202 | HIGH | 7.8 | 0.2% | Nov 13, 2019 | In CryptoPlugin::decrypt of CryptoPlugin.cpp, there is a possible out of bounds write due to a heap buffer overflow. Thi... |
| CVE-2019-2201 | HIGH | 7.8 | 2.7% | Nov 13, 2019 | In generate_jsimd_ycc_rgb_convert_neon of jsimd_arm64_neon.S, there is a possible out of bounds write due to a missing b... |
| CVE-2019-2195 | HIGH | 7.8 | 0.2% | Nov 13, 2019 | In tokenize of sqlite3_android.cpp, there is a possible attacker controlled INSERT statement due to improper input valid... |
| CVE-2019-2193 | HIGH | 7.8 | 0.2% | Nov 13, 2019 | In WelcomeActivity.java and related files, there is a possible permissions bypass due to a partially provisioned Device ... |
| CVE-2019-2192 | HIGH | 7.8 | 0.2% | Nov 13, 2019 | In call of SliceProvider.java, there is a possible permissions bypass due to improper input validation. This could lead ... |
| CVE-2019-18279 | HIGH | 8.8 | 1.3% | Nov 13, 2019 | In Phoenix SCT WinFlash 1.1.12.0 through 1.5.74.0, the included drivers could be used by a malicious Windows application... |
| CVE-2019-5294 | HIGH | 7.5 | 0.9% | Nov 13, 2019 | There is an out of bound read vulnerability in some Huawei products. A remote, unauthenticated attacker may send a corru... |
| CVE-2019-5289 | HIGH | 7.5 | 0.7% | Nov 13, 2019 | Gauss100 OLTP database in ManageOne with versions of 6.5.0 have an out-of-bounds read vulnerability due to the insuffici... |
| CVE-2019-18931 | HIGH | 8.8 | 2.2% | Nov 13, 2019 | Western Digital My Cloud EX2 Ultra firmware 2.31.195 allows a Buffer Overflow with Extended Instruction Pointer (EIP) co... |
| CVE-2019-18930 | HIGH | 8.8 | 3.2% | Nov 13, 2019 | Western Digital My Cloud EX2 Ultra firmware 2.31.183 allows web users (including guest account) to remotely execute arbi... |
| CVE-2019-18929 | HIGH | 8.8 | 2.9% | Nov 13, 2019 | Western Digital My Cloud EX2 Ultra firmware 2.31.183 allows web users (including guest accounts) to remotely execute arb... |
| CVE-2019-15948 | HIGH | 8.8 | 2.5% | Nov 13, 2019 | Texas Instruments CC256x and WL18xx dual-mode Bluetooth controller devices, when LE scan mode is used, allow remote atta... |
| CVE-2019-5288 | HIGH | 7.8 | 0.9% | Nov 13, 2019 | P30 smart phones with versions earlier than ELLE-AL00B 9.1.0.193(C00E190R2P1) have an integer overflow vulnerability due... |
| CVE-2019-5287 | HIGH | 7.8 | 0.9% | Nov 13, 2019 | P30 smart phones with versions earlier than ELLE-AL00B 9.1.0.193(C00E190R2P1) have an integer overflow vulnerability due... |
Check if your code is affected by 2019 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now