17,305 vulnerabilities published in 2019
In the Linux kernel before 5.3.9, there are multiple out-of-bounds write bugs that can be caused by a malicious USB devi
An issue was discovered in Xen through 4.12.x allowing attackers to gain host OS privileges via DMA in a situation where
The chkstat tool in the permissions package followed symlinks before commit a9e1d26cd49ef9ee0c2060c859321128a6dd4230 (pl
Blink XT2 Sync Module firmware prior to 2.13.11 allows remote attackers to execute arbitrary code and commands on the de
A vulnerability has been identified in SIMATIC S7-1200 CPU family (incl. SIPLUS variants) (All versions), SIMATIC S7-120
Barco ClickShare Button R9861500D01 devices before 1.9.0 have Insufficiently Protected Credentials. The root account (pr
Settings for the Dell XPS 13 2-in-1 (7390) BIOS versions prior to 1.1.3 contain a configuration vulnerability. The BIOS
This issue was addressed by improving Face ID machine learning models. This issue is fixed in iOS 13. A 3D model constru
Insufficient input validation in subsystem for Intel(R) AMT before version 12.0.45 may allow an unauthenticated user to
Privilege escalation vulnerability in INplc-RT 3.08 and earlier allows an attacker with administrator rights to execute
In PolicyKit (aka polkit) 0.115, the "start time" protection mechanism can be bypassed because fork() is not atomic, and
Vulnerability in the Oracle Hospitality Cruise Shipboard Property Management System component of Oracle Hospitality Appl
Vulnerability in the Oracle WebLogic Server component of Oracle Fusion Middleware (subcomponent: WLS Core Components). S
Code injection vulnerability in the installer for Intel(R) USB 3.0 eXtensible Host Controller Driver for Microsoft Windo
Insufficient run protection in install routine for Intel(R) Data Center Manager SDK before version 5.0.2 may allow a pri
Insufficient user prompt in install routine for Intel(R) Data Center Manager SDK before version 5.0.2 may allow a privil
If supportutils before version 3.1-5.7.1 is run with -v to perform rpm verification and the attacker manages to manipula
A vulnerability in the controller authorization functionality of Cisco Nexus 9000 Series ACI Mode Switch Software could
A vulnerability in the CLI of Cisco NX-OS Software could allow an authenticated, local attacker to execute arbitrary com
A vulnerability in the CLI of Cisco NX-OS Software could allow an authenticated, local attacker to execute arbitrary com
A vulnerability in the CLI of Cisco NX-OS Software could allow an authenticated, local attacker to execute arbitrary com
A vulnerability in the CLI of Cisco NX-OS Software could allow an authenticated, local attacker to execute arbitrary com
A vulnerability in the CLI of Cisco NX-OS Software and Cisco FXOS Software could allow an authenticated, local attacker
A vulnerability in the CLI of Cisco NX-OS Software could allow an authenticated, local attacker to execute arbitrary com
A vulnerability in the Image Signature Verification feature of Cisco NX-OS Software could allow an authenticated, local
Insufficient input validation in Intel(r) CSME subsystem before versions 11.8.60, 11.11.60, 11.22.60 or 12.0.20 or Intel
Insufficient input validation in Intel(R) AMT in Intel(R) CSME before version 11.8.60, 11.11.60, 11.22.60 or 12.0.20 may
Insufficient access control in Intel(R) Capability Licensing Service before version 1.50.638.1 may allow an unprivileged
Buffer overflow vulnerability in Platform Sample / Silicon Reference firmware for 8th Generation Intel(R) Core Processor
Privilege escalation vulnerability in Platform Sample/ Silicon Reference firmware for 8th Generation Intel(R) Core Proce
Denial of service vulnerability in Platform Sample/ Silicon Reference firmware for 8th Generation Intel Core Processor,
Improper memory initialization in Platform Sample/Silicon Reference firmware Intel(R) Server Board, Intel(R) Server Syst
An unquoted search path vulnerability was identified in Lenovo Dynamic Power Reduction Utility prior to version 2.2.2.0
A vulnerability was discovered in vdsm, version 4.19 through 4.30.3 and 4.30.5 through 4.30.8. The systemd_run function
Insufficient memory write check in SMM service for EDK II may allow an authenticated user to potentially enable escalati
IBM Sterling Connect:Direct for UNIX 4.2.0, 4.3.0, and 6.0.0 could allow a user with restricted sudo access on a system
A vulnerability in the CLI of Cisco Aironet Series Access Points (APs) could allow an authenticated, local attacker to g
UDM provides support for running commands after a download is completed, this is currently made use of for click package
A vulnerability in the CLI of Cisco Firepower Threat Defense (FTD) Software could allow an authenticated, local attacker
A vulnerability in the filesystem management for the Cisco Nexus 9000 Series Application Centric Infrastructure (ACI) Mo
NVIDIA Windows GPU Display driver software for Windows (all versions) contains a vulnerability in which it incorrectly l
A vulnerability in the logic that handles access control to one of the hardware components in Cisco's proprietary Secure
A vulnerability in the Python scripting subsystem of Cisco NX-OS Software could allow an authenticated, local attacker t
A vulnerability in the Secure Configuration Validation functionality of Cisco FXOS Software and Cisco NX-OS Software cou
A vulnerability in the Bash shell implementation for Cisco NX-OS Software could allow an authenticated, local attacker t
A vulnerability in the implementation of a specific CLI command for Cisco NX-OS Software could allow an authenticated, l
A vulnerability in the CLI of Cisco NX-OS Software could allow an authenticated, local attacker with administrator crede
A vulnerability in the CLI of Cisco NX-OS Software could allow an authenticated, local attacker with administrator crede
A vulnerability in the CLI of Cisco NX-OS Software could allow an authenticated, local attacker to execute arbitrary com
A vulnerability in the CLI of Cisco NX-OS Software could allow an authenticated, local attacker to execute arbitrary com
Scan for 2019 Vulnerabilities
CyberStrike detects these CVEs across your infrastructure automatically.
Get Started