17,305 vulnerabilities published in 2019
An elevation of privilege exists in Windows Audio Service. An attacker who successfully exploited the vulnerability coul
An elevation of privilege exists in Windows Audio Service. An attacker who successfully exploited the vulnerability coul
An elevation of privilege exists in Windows Audio Service. An attacker who successfully exploited the vulnerability coul
A remote code execution vulnerability exists in Microsoft Word software when it fails to properly handle objects in memo
A remote code execution vulnerability exists in Microsoft Word software when it fails to properly handle objects in memo
An elevation of privilege vulnerability exists in the way that the Windows Network File System (NFS) handles objects in
An elevation of privilege vulnerability exists when Windows AppX Deployment Service (AppXSVC) improperly handles hard li
An elevation of privilege vulnerability exists when the Windows kernel fails to properly handle objects in memory. An at
An elevation of privilege vulnerability exists in the way the Task Scheduler Service validates certain file operations.
Buffer overflow vulnerability found in some Dahua IP Camera devices IPC-HFW1XXX,IPC-HDW1XXX,IPC-HFW2XXX Build before 201
The application (Network Configurator for DeviceNet Safety 3.41 and prior) searches for resources by means of an untrust
Improper permissions in the installer for the ITE Tech* Consumer Infrared Driver for Windows 10 versions before 5.4.3.0
Improper permissions in the installer for Intel(R) Chipset Device Software (INF Update Utility) before version 10.1.1.45
Improper permissions in the installer for Intel(R) Omni-Path Fabric Manager GUI before version 10.9.2.1.1 may allow an a
In radare2 through 3.5.1, the rcc_context function of libr/egg/egg_lang.c mishandles changing context. This allows remot
Use after issue in WLAN function due to multiple ACS scan requests at a time in Snapdragon Auto, Snapdragon Consumer IOT
Lack of input validation in WLAN function can lead to potential heap overflow in Snapdragon Auto, Snapdragon Consumer IO
Possible out of bounds write due to improper input validation while processing DO_ACS vendor command in Snapdragon Auto,
Use after issue in WLAN function due to multiple ACS scan requests at a time in Snapdragon Auto, Snapdragon Consumer IOT
Truncated access authentication token leads to weakened access control for stored secure application data in Snapdragon
Out-of-Bounds access in TZ due to invalid index calculated to check against DDR in Snapdragon Auto, Snapdragon Connectiv
Use-after-free vulnerability will occur if reset of the routing table encounters an invalid rule id while processing com
A buffer overflow can occur while processing an extscan hotlist event in Snapdragon Auto, Snapdragon Consumer Electronic
Buffer overflow in WLAN driver event handlers due to improper validation of array index in Snapdragon Auto, Snapdragon C
Out of bounds read occurs due to improper validation of array while processing VDEV stop response from WLAN firmware in
Buffer overflow in WLAN function due to improper check of buffer size before copying in Snapdragon Auto, Snapdragon Cons
A non-time constant function memcmp is used which creates a side channel that could leak information in Snapdragon Auto,
Wrong permissions in configuration file can lead to unauthorized permission in Snapdragon Auto, Snapdragon Connectivity,
A use after free in the TextBox field Validate action in IReader_ContentProvider can occur for specially crafted PDF fil
A command injection can occur for specially crafted PDF files in Foxit Reader SDK (ActiveX) Professional 5.4.0.1031 when
A File Write can occur for specially crafted PDF files in Foxit Reader SDK (ActiveX) Professional 5.4.0.1031 when the Ja
A stack-based buffer overflow can occur for specially crafted PDF files in Foxit Reader SDK (ActiveX) 5.4.0.1031 when pa
In Foxit Reader SDK (ActiveX) Professional 5.4.0.1031, an uninitialized object in IReader_ContentProvider::GetDocEventHa
A File Write can occur for specially crafted PDF files in Foxit Reader SDK (ActiveX) Professional 5.4.0.1031 when the Ja
A command injection can occur for specially crafted PDF files in Foxit Reader SDK (ActiveX) 5.4.0.1031 when parsing a la
Recently it was discovered as a part of the research on IoT devices in the most recent firmware for Shekar Endoscope tha
Recently it was discovered as a part of the research on IoT devices in the most recent firmware for Shekar Endoscope tha
Multiple Zoho ManageEngine products suffer from local privilege escalation due to improper permissions for the %SYSTEMDR
i915_gem_userptr_get_pages in drivers/gpu/drm/i915/i915_gem_userptr.c in the Linux kernel 4.15.0 on Ubuntu 18.04.2 allow
Cloud Foundry BOSH 270.x versions prior to v270.1.1, contain a BOSH Director that does not properly redact credentials w
In findAvailSpellCheckerLocked of TextServicesManagerService.java, there is a possible way to bypass the warning dialog
In phNxpNciHal_process_ext_rsp of phNxpNciHal_ext.cc, there is a possible out-of-bound write due to a missing bounds che
In readNullableNativeHandleNoDup of Parcel.cpp, there is a possible out of bounds write due to a missing bounds check. T
In rw_t2t_handle_tlv_detect_rsp of rw_t2t_ndef.cc, there is a possible out-of-bound write due to a missing bounds check.
In ServiceManager::add function in the hardware service manager, there is an insecure permissions check based on the PID
In em28xx_unregister_dvb of em28xx-dvb.c, there is a possible use after free issue. This could lead to local escalation
In binder_thread_read of binder.c, there is a possible use-after-free due to improper locking. This could lead to local
A vulnerability in the CLI of Cisco SD-WAN Solution could allow an authenticated, local attacker to elevate lower-level
Dell SupportAssist for Business PCs version 2.0 and Dell SupportAssist for Home PCs version 2.2, 2.2.1, 2.2.2, 2.2.3, 3.
A vulnerability in the London Trust Media Private Internet Access (PIA) VPN Client 1.0.2 (build 02363) for Windows could
Scan for 2019 Vulnerabilities
CyberStrike detects these CVEs across your infrastructure automatically.
Get Started