2019 CVE Vulnerabilities
17,619 CVEs published in 2019.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2019-1415 | HIGH | 7.8 | 0.8% | Nov 12, 2019 | An elevation of privilege vulnerability exists in Windows Installer because of the way Windows Installer handles certain... |
| CVE-2019-1408 | HIGH | 7.8 | 1.3% | Nov 12, 2019 | An elevation of privilege vulnerability exists in Windows when the Win32k component fails to properly handle objects in ... |
| CVE-2019-1407 | HIGH | 7.8 | 0.9% | Nov 12, 2019 | An elevation of privilege vulnerability exists when the Windows Graphics Component improperly handles objects in memory,... |
| CVE-2019-1406 | HIGH | 7.8 | 12.3% | Nov 12, 2019 | A remote code execution vulnerability exists when the Windows Jet Database Engine improperly handles objects in memory, ... |
| CVE-2019-1405 | HIGH | 7.8 | 29.9% | Nov 12, 2019 | An elevation of privilege vulnerability exists when the Windows Universal Plug and Play (UPnP) service improperly allows... |
| CVE-2019-1398 | HIGH | 8.4 | 2.7% | Nov 12, 2019 | A remote code execution vulnerability exists when Windows Hyper-V on a host server fails to properly validate input from... |
| CVE-2019-1397 | HIGH | 8.4 | 4.0% | Nov 12, 2019 | A remote code execution vulnerability exists when Windows Hyper-V on a host server fails to properly validate input from... |
| CVE-2019-1396 | HIGH | 7.8 | 1.1% | Nov 12, 2019 | An elevation of privilege vulnerability exists in Windows when the Win32k component fails to properly handle objects in ... |
| CVE-2019-1395 | HIGH | 7.8 | 1.1% | Nov 12, 2019 | An elevation of privilege vulnerability exists in Windows when the Win32k component fails to properly handle objects in ... |
| CVE-2019-1394 | HIGH | 7.8 | 1.1% | Nov 12, 2019 | An elevation of privilege vulnerability exists in Windows when the Win32k component fails to properly handle objects in ... |
| CVE-2019-1393 | HIGH | 7.8 | 1.3% | Nov 12, 2019 | An elevation of privilege vulnerability exists in Windows when the Win32k component fails to properly handle objects in ... |
| CVE-2019-1392 | HIGH | 7.8 | 0.8% | Nov 12, 2019 | An elevation of privilege vulnerability exists when the Windows kernel fails to properly handle objects in memory, aka '... |
| CVE-2019-1390 | HIGH | 7.5 | 6.4% | Nov 12, 2019 | A remote code execution vulnerability exists in the way that the VBScript engine handles objects in memory, aka 'VBScrip... |
| CVE-2019-1389 | HIGH | 8.4 | 4.0% | Nov 12, 2019 | A remote code execution vulnerability exists when Windows Hyper-V on a host server fails to properly validate input from... |
| CVE-2019-1388 | HIGH | 7.8 | 8.6% | Nov 12, 2019 | An elevation of privilege vulnerability exists in the Windows Certificate Dialog when it does not properly enforce user ... |
| CVE-2019-1385 | HIGH | 7.8 | 3.6% | Nov 12, 2019 | An elevation of privilege vulnerability exists when the Windows AppX Deployment Extensions improperly performs privilege... |
| CVE-2019-1383 | HIGH | 7.8 | 0.7% | Nov 12, 2019 | An elevation of privilege vulnerability exists when the Windows Data Sharing Service improperly handles file operations,... |
| CVE-2019-1380 | HIGH | 7.8 | 0.7% | Nov 12, 2019 | A local elevation of privilege vulnerability exists in how splwow64.exe handles certain calls, aka 'Microsoft splwow64 E... |
| CVE-2019-1379 | HIGH | 7.8 | 0.7% | Nov 12, 2019 | An elevation of privilege vulnerability exists when the Windows Data Sharing Service improperly handles file operations,... |
| CVE-2019-1234 | HIGH | 7.5 | 57.9% | Nov 12, 2019 | A spoofing vulnerability exists when Azure Stack fails to validate certain requests, aka 'Azure Stack Spoofing Vulnerabi... |
| CVE-2019-12720 | HIGH | 7.5 | 1.7% | Nov 12, 2019 | AUO SunVeillance Monitoring System before v1.1.9e is vulnerable to mvc_send_mail.aspx (MailAdd parameter) SQL Injection.... |
| CVE-2019-17360 | HIGH | 7.5 | 1.3% | Nov 12, 2019 | A vulnerability in Hitachi Command Suite 7.x and 8.x before 8.7.0-00 allows an unauthenticated remote user to trigger a ... |
| CVE-2019-17237 | HIGH | 8.8 | 0.7% | Nov 12, 2019 | includes/class-coming-soon-creator.php in the igniteup plugin through 3.4 for WordPress allows CSRF. |
| CVE-2019-17234 | HIGH | 7.5 | 3.2% | Nov 12, 2019 | includes/class-coming-soon-creator.php in the igniteup plugin through 3.4 for WordPress allows unauthenticated arbitrary... |
| CVE-2019-4652 | HIGH | 7.1 | 0.3% | Nov 12, 2019 | IBM Spectrum Protect Plus 10.1.0 through 10.1.4 uses insecure file permissions on restored files and directories in Wind... |
Check if your code is affected by 2019 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now