17,305 vulnerabilities published in 2019
Code injection vulnerability in installer for Intel(R) CSME before versions 11.8.65, 11.11.65, 11.22.65, 12.0.35 and Int
Improper directory permissions in Intel(R) ACU Wizard version 12.0.0.129 and earlier may allow an authenticated user to
Improper directory permissions in the installer for Intel(R) Quartus(R) software may allow an authenticated user to pote
During HE deployment via cockpit-ovirt, cockpit-ovirt generates an ansible variable file `/var/lib/ovirt-hosted-engine-s
Insufficient input validation in Kernel Mode Driver in Intel(R) i915 Graphics for Linux before version 5.0 may allow an
Insufficient input validation in system firmware for Intel (R) NUC Kit may allow an authenticated user to potentially en
Untrusted search path vulnerability in Installer of Electronic reception and examination of application for radio licens
Untrusted search path vulnerability in Electronic reception and examination of application for radio licenses Offline 1.
In PaperStream IP (TWAIN) 1.42.0.5685 (Service Update 7), the FJTWSVIC service running with SYSTEM privilege processes u
In the F-Secure installer in F-Secure SAFE for Windows before 17.6, F-Secure Internet Security before 17.6, F-Secure Ant
Typora 0.9.9.21.1 (1913) allows arbitrary code execution via a modified file: URL syntax in the HREF attribute of an ARE
The Android mobile application BlueCats Reveal before 3.0.19 stores the username and password in a clear text file. This
The iOS mobile application BlueCats Reveal before 5.14 stores the username and password in the app cache as base64 encod
A Uncontrolled Search Path Element (CWE-427) vulnerability exists in VideoXpert OpsCenter versions prior to 3.1 which co
IBM WebSphere MQ 8.0.0.0 through 8.0.0.9 and 9.0.0.0 through 9.1.1 could allow a local non privileged user to execute co
Improper buffer length check before copying can lead to integer overflow and then a buffer overflow in WMA event handler
Improper buffer length validation in WLAN function can lead to a potential integer oveflow issue in Snapdragon Auto, Sna
Data length received from firmware is not validated against the max allowed size which can result in buffer overflow. in
Improper input validation on input which is used as an array index will lead to an out of bounds issue while processing
Lack of check on length parameter may cause buffer overflow while processing WMI commands in Snapdragon Auto, Snapdragon
Signature verification of the skel library could potentially be disabled as the memory region on the remote subsystem in
Improper check before assigning value can lead to integer overflow in Snapdragon Auto, Snapdragon Compute, Snapdragon Co
While updating blacklisting region shared buffered memory region is not validated against newly updated black list, caus
Improper authentication in locked memory region can lead to unprivilged access to the memory in Snapdragon Auto, Snapdra
Due to the missing permissions on several content providers of the RCS app in its android manifest file will lead to an
Processing messages after error may result in user after free memory fault in Snapdragon Auto, Snapdragon Compute, Snapd
Use-after-free condition due to Improper handling of hrtimers when the PMU driver tries to access its events in Snapdrag
Possibility of double free issue while running multiple instances of smp2p test because of proper protection is missing
Buffer overflow can occur if invalid header tries to overwrite the existing buffer which fix size allocation in Snapdrag
Kernel can write to arbitrary memory address passed by user while freeing/stopping a thread in Snapdragon Compute, Snapd
Creative Cloud Desktop Application (installer) versions 4.7.0.400 and earlier have an insecure library loading (dll hija
Petraware pTransformer ADC before 2.1.7.22827 allows SQL Injection via the User ID parameter to the login form.
A heap buffer overflow in the TFTP receiving code allows for DoS or arbitrary code execution in libcurl versions 7.19.4
An Unsafe Search Path vulnerability in FortiClient Online Installer (Windows version before 6.0.6) may allow an unauthen
An issue was discovered in wcd9335_codec_enable_dec in sound/soc/codecs/wcd9335.c in the Linux kernel through 5.1.5. It
An issue was discovered in the MPT3COMMAND case in _ctl_ioctl_main in drivers/scsi/mpt3sas/mpt3sas_ctl.c in the Linux ke
A local privilege escalation in Fortinet FortiClient for Windows 6.0.4 and earlier allows attacker to execute unauthoriz
An exploitable local privilege elevation vulnerability exists in the file system permissions of the `Temp` directory in
A local privilege escalation in Fortinet FortiClient for Windows 6.0.4 and earlier allows attackers to execute unauthori
A researcher has disclosed several vulnerabilities against FortiClient for Windows version 6.0.5 and below, version 5.6.
An issue was discovered in GPAC 0.7.1. There is a heap-based buffer overflow in the function ReadGF_IPMPX_RemoveToolNoti
In Vijeo Citect 7.30 and 7.40, and CitectSCADA 7.30 and 7.40, a vulnerability has been identified that may allow an auth
Evernote 7.9 on macOS allows attackers to execute arbitrary programs by embedding a reference to a local executable file
NVIDIA GeForce Experience versions prior to 3.19 contains a vulnerability in the Web Helper component, in which an attac
A vulnerability in Viber before 10.7.0 for Desktop (Windows) could allow an attacker to execute arbitrary commands on a
This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Foxit Studio Photo 3
This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Foxit Studio Photo 3
This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Foxit Studio Photo 3
This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Foxit Studio Photo 3
This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Foxit Studio Photo 3
Scan for 2019 Vulnerabilities
CyberStrike detects these CVEs across your infrastructure automatically.
Get Started