17,305 vulnerabilities published in 2019
Insufficient password protection in the attestation database for Open CIT may allow an authenticated user to potentially
Check Point Endpoint Security Client for Windows, with Anti-Malware blade installed, before version E81.00, tries to loa
IBM Security Access Manager 9.0.1 through 9.0.6 does not invalidate session tokens in a timely manner. The lack of prope
IBM PureApplication System 2.2.3.0 through 2.2.5.3 stores potentially sensitive information in log files that could be r
On BIG-IP 14.1.0-14.1.0.5, 14.0.0-14.0.0.4, 13.0.0-13.1.1.4, 12.1.0-12.1.4.1, and 11.5.1-11.6.4, when the BIG-IP system
On BIG-IP 14.1.0-14.1.0.5, 14.0.0-14.0.0.4, 13.0.0-13.1.1.4, 12.1.0-12.1.4, 11.6.1-11.6.3.4, and 11.5.1-11.5.8, when the
IBM Multicloud Manager 3.1.0, 3.1.1, and 3.1.2 ibm-mcm-chart could allow a local attacker with admin privileges to obtai
In Avast Antivirus before 19.4, a local administrator can trick the product into renaming arbitrary files by replacing t
A IBM Spectrum Protect 7.l client backup or archive operation running for an HP-UX VxFS object is silently skipping Acce
Philips Holter 2010 Plus, all versions. A vulnerability has been identified that may allow system options that were not
cPanel before 74.0.0 allows certain file-read operations via password file caching (SEC-425).
cPanel before 64.0.21 allows a Webmail account to execute code via forwarders (SEC-240).
cPanel before 62.0.17 allows arbitrary file-read operations via WHM /styled/ URLs (SEC-218).
cPanel before 62.0.17 does not have a sufficient list of reserved usernames (SEC-227).
IBM Cloud Private 2.1.0 , 3.1.0, 3.1.1, and 3.1.2 could allow a local privileged user to obtain sensitive OIDC token tha
Multiple vulnerabilities in Cisco Enterprise NFV Infrastructure Software (NFVIS) could allow an authenticated, local att
Multiple vulnerabilities in Cisco Enterprise NFV Infrastructure Software (NFVIS) could allow an authenticated, local att
An information disclosure vulnerability exists in the way Microsoft SharePoint handles session objects. An authenticated
An issue was discovered in the Linux kernel before 5.0.19. There is an out-of-bounds array access in __xfrm_policy_unlin
In systemd 240, bus_open_system_watch_bind_with_description in shared/bus-util.c (as used by systemd-resolved to connect
On version 1.9.0, If DEBUG logging is enable, F5 Container Ingress Service (CIS) for Kubernetes and Red Hat OpenShift (k
In the Android kernel in the f2fs driver there is a possible out of bounds read due to a missing bounds check. This coul
In the Android kernel in sync debug fs driver there is a kernel pointer leak due to the usage of printf with %p. This co
In the Android kernel in F2FS driver there is a possible out of bounds read due to a missing bounds check. This could le
In the Android kernel in FingerTipS touchscreen driver there is a possible out of bounds read due to a missing bounds ch
In the Android kernel in SEC_TS touch driver there is a possible out of bounds read due to a missing bounds check. This
In the Android kernel in F2FS touch driver there is a possible out of bounds read due to improper input validation. This
In the Linux kernel through 5.2.14 on the powerpc platform, a local user can read vector registers of other users' proce
In the Linux kernel through 5.2.14 on the powerpc platform, a local user can read vector registers of other users' proce
A flaw was found in FreeIPA versions 4.5.0 and later. Session cookies were retained in the cache after logout. An attack
A specific utility may allow an attacker to gain read access to privileged files in the Niagara AX 3.8u4 (JACE 3e, JACE
In KeyStore, there is a possible storage of symmetric keys in the TEE instead of the strongbox due to a missing strongbo
In the TEE, there's a possible out of bounds read due to a missing bounds check. This could lead to local information di
IBM FileNet Content Manager 5.5.2 and 5.5.3 in specific configurations, could log the web service user credentials into
Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Connection). Supported versions that are a
Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are
A vulnerability in the CLI of Cisco Wireless LAN Controller (WLC) Software could allow an authenticated, local attacker
Multiple vulnerabilities in the CLI of Cisco TelePresence Collaboration Endpoint (CE) Software could allow an authentica
A vulnerability in the CLI of Cisco TelePresence Collaboration Endpoint (CE) Software could allow an authenticated, loca
An issue was discovered in Bitdefender BOX firmware versions before 2.1.37.37-34 that affects the general reliability of
An exploitable shared memory permissions vulnerability exists in the functionality of X11 Mesa 3D Graphics Library 19.1.
NVIDIA Virtual GPU Manager, all versions, contains a vulnerability in the vGPU plugin, in which an input index value is
Insufficient access control in protected memory subsystem for Intel(R) SGX for 6th, 7th, 8th, 9th Generation Intel(R) Co
Buffer overflow in Kernel Mode module for Intel(R) Graphics Driver before version 25.20.100.6618 (DCH) or 21.20.x.5077 (
A memory leak in the mlx5_fpga_conn_create_cq() function in drivers/net/ethernet/mellanox/mlx5/core/fpga/conn.c in the L
Four memory leaks in the acp_hw_init() function in drivers/gpu/drm/amd/amdgpu/amdgpu_acp.c in the Linux kernel before 5.
A memory leak in the predicate_parse() function in kernel/trace/trace_events_filter.c in the Linux kernel through 5.3.11
Node-cookie-signature before 1.0.6 is affected by a timing attack due to the type of comparison used.
IBM SmartCloud Analytics 1.3.1 through 1.3.5 allows unauthorized disclosure of information like accessing solrconfig.xml
Scan for 2019 Vulnerabilities
CyberStrike detects these CVEs across your infrastructure automatically.
Get Started