17,305 vulnerabilities published in 2019
Clustered Data ONTAP versions prior to 9.1P16, 9.3P10 and 9.4P5 are susceptible to a vulnerability which discloses sensi
A flaw was found in the Linux kernel in the function hid_debug_events_read() in drivers/hid/hid-debug.c file which may e
Clustered Data ONTAP versions 9.0 through 9.4 are susceptible to a vulnerability which allows remote authenticated attac
Improper flow control in crypto routines for Intel(R) Data Center Manager SDK before version 5.0.2 may allow a privilege
do_core_note in readelf.c in libmagic.a in file 5.35 has a stack-based buffer over-read, related to file_printable, a di
do_core_note in readelf.c in libmagic.a in file 5.35 has an out-of-bounds read because memcpy is misused.
QEMU, through version 2.10 and through version 3.1.0, is vulnerable to an out-of-bounds read of up to 128 bytes in the h
If the attacker manages to create files in the directory used to collect log files in supportutils before version 3.1-5.
IBM Cloud Private 3.1.1 could alllow a local user with administrator privileges to intercept highly sensitive unencrypte
IBM Cloud Private 3.1.1 could alllow a local user with administrator privileges to intercept highly sensitive unencrypte
A vulnerability in the Cisco Nexus 9000 Series Fabric Switches running in Application-Centric Infrastructure (ACI) mode
A vulnerability in the file system permissions of Cisco FXOS Software and Cisco NX-OS Software could allow an authentica
Unhandled exception in Content Protection subsystem in Intel CSME before versions 11.8.60, 11.11.60, 11.22.60 or 12.0.20
A vulnerability in the Secure Storage feature of Cisco IOS and IOS XE Software could allow an authenticated, local attac
IBM Tivoli Storage Manager (IBM Spectrum Protect 8.1.7) could allow a user to restore files and directories using IBM Sp
An information disclosure vulnerability exists when the Terminal Services component improperly discloses the contents of
Information Disclosure vulnerability in McAfee DXL Platform and TIE Server in DXL prior to 5.0.1 HF2 and TIE prior to 2.
A vulnerability in the CLI of Cisco Aironet Access Points (APs) could allow an authenticated, local attacker to access s
Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Replication). Supported versions that
Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Replication). Supported versions that
Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Replication). Supported versions that
Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Group Replication Plugin). Supported
A vulnerability in the SSH CLI key management functionality of Cisco NX-OS Software could allow an authenticated, local
A vulnerability in the Image Signature Verification feature of Cisco NX-OS Software could allow an authenticated, local
Insufficient data sanitization vulnerability in HECI subsystem for Intel(R) CSME before versions 11.8.65, 11.11.65, 11.2
An out of bound read in KMD module for Intel(R) Graphics Driver before version 10.18.14.5067 (aka 15.36.x.5067) and 10.1
Insufficient key protection vulnerability in silicon reference firmware for Intel(R) Pentium(R) Processor J Series, Inte
Insufficient access control in Intel(R) Driver & Support Assistant version 19.3.12.3 and before may allow a privileged u
Insufficient input validation in Intel(R) Driver & Support Assistant version 19.3.12.3 and before may allow a privileged
A vulnerability in the BIOS upgrade utility of Cisco Unified Computing System (UCS) C-Series Rack Servers could allow an
A denial of service exists in Microsoft IIS Server when the optional request filtering feature improperly handles reques
Insufficient password protection in the attestation database for Open CIT may allow an authenticated user to potentially
Insufficient password protection in the attestation database for Open CIT may allow an authenticated user to potentially
Insufficient password protection in the attestation database for Open CIT may allow an authenticated user to potentially
Insufficient password protection in the attestation database for Open CIT may allow an authenticated user to potentially
Insufficient password protection in the attestation database for Open CIT may allow an authenticated user to potentially
Check Point Endpoint Security Client for Windows, with Anti-Malware blade installed, before version E81.00, tries to loa
IBM Security Access Manager 9.0.1 through 9.0.6 does not invalidate session tokens in a timely manner. The lack of prope
IBM PureApplication System 2.2.3.0 through 2.2.5.3 stores potentially sensitive information in log files that could be r
On BIG-IP 14.1.0-14.1.0.5, 14.0.0-14.0.0.4, 13.0.0-13.1.1.4, 12.1.0-12.1.4.1, and 11.5.1-11.6.4, when the BIG-IP system
On BIG-IP 14.1.0-14.1.0.5, 14.0.0-14.0.0.4, 13.0.0-13.1.1.4, 12.1.0-12.1.4, 11.6.1-11.6.3.4, and 11.5.1-11.5.8, when the
IBM Multicloud Manager 3.1.0, 3.1.1, and 3.1.2 ibm-mcm-chart could allow a local attacker with admin privileges to obtai
In Avast Antivirus before 19.4, a local administrator can trick the product into renaming arbitrary files by replacing t
A IBM Spectrum Protect 7.l client backup or archive operation running for an HP-UX VxFS object is silently skipping Acce
Philips Holter 2010 Plus, all versions. A vulnerability has been identified that may allow system options that were not
cPanel before 74.0.0 allows certain file-read operations via password file caching (SEC-425).
cPanel before 64.0.21 allows a Webmail account to execute code via forwarders (SEC-240).
cPanel before 62.0.17 allows arbitrary file-read operations via WHM /styled/ URLs (SEC-218).
cPanel before 62.0.17 does not have a sufficient list of reserved usernames (SEC-227).
IBM Cloud Private 2.1.0 , 3.1.0, 3.1.1, and 3.1.2 could allow a local privileged user to obtain sensitive OIDC token tha
Scan for 2019 Vulnerabilities
CyberStrike detects these CVEs across your infrastructure automatically.
Get Started