17,305 vulnerabilities published in 2019
The extract_group_icon_cursor_resource in wrestool/extract.c in icoutils before 0.31.1 can access unallocated memory, wh
Integer overflow in the extract_group_icon_cursor_resource function in b/wrestool/extract.c in icoutils before 0.31.1 al
The Windows component of Centrify Authentication and Privilege Elevation Services 3.4.0, 3.4.1, 3.4.2, 3.4.3, 3.5.0, 3.5
An exploitable memory corruption vulnerability exists in Investintech Able2Extract Professional 14.0.7 x64. A specially
An exploitable memory corruption vulnerability exists in Investintech Able2Extract Professional 4.0.7 x64. A specially c
ADSP can be compromised since it`s a general-purpose CPU processing untrusted data in Snapdragon Auto, Snapdragon Comput
Lack of checking a variable received from driver and populating in Firmware data structure leads to buffer overflow in S
Possible stack overflow when an index equal to io buffer size is accessed in camera module in Snapdragon Compute, Snapdr
Payload size is not checked before using it as array index in audio in Snapdragon Auto, Snapdragon Compute, Snapdragon C
Lack of check for a negative value returned for get_clk is wrongly interpreted as valid pointer and lead to use after fr
Thread start can cause invalid memory writes to arbitrary memory location since the argument is passed by user to kernel
An exploitable heap out-of-bounds write vulnerability exists in the TIF-parsing functionality of LEADTOOLS 20. A special
An exploitable integer underflow vulnerability exists in the CMP-parsing functionality of LEADTOOLS 20. A specially craf
An exploitable integer overflow vulnerability exists in the BMP header parsing functionality of LEADTOOLS 20. A speciall
An exploitable heap overflow vulnerability exists in the JPEG2000 parsing functionality of LEADTOOLS 20. A specially cra
frysk packages through 2008-08-05 as shipped in Red Hat Enterprise Linux 5 are built with an insecure RPATH set in the E
Brocade SANnav versions before v2.0 use a hard-coded password, which could allow local authenticated attackers to access
NVIDIA GeForce Experience, all versions prior to 3.20.1, contains a vulnerability in the Downloader component in which a
NVIDIA Windows GPU Display Driver, all versions, contains a vulnerability in the kernel mode layer (nvlddmkm.sys) handle
NVIDIA Windows GPU Display Driver, all versions, contains a vulnerability in the kernel mode layer (nvlddmkm.sys) handle
NVIDIA Windows GPU Display Driver, all versions, contains a vulnerability in the kernel mode layer (nvlddmkm.sys) handle
NVIDIA GeForce Experience, all versions prior to 3.20.0.118, contains a vulnerability when GameStream is enabled in whic
maidag in GNU Mailutils before 3.8 is installed setuid and allows local privilege escalation in the url mode.
atop: symlink attack possible due to insecure tempfile handling
An elevation of privilege vulnerability exists when the Windows Data Sharing Service improperly handles file operations,
A local elevation of privilege vulnerability exists in how splwow64.exe handles certain calls, aka 'Microsoft splwow64 E
An elevation of privilege vulnerability exists when the Windows Data Sharing Service improperly handles file operations,
An elevation of privilege vulnerability exists when the Windows AppX Deployment Extensions improperly performs privilege
An elevation of privilege vulnerability exists in the Windows Certificate Dialog when it does not properly enforce user
An elevation of privilege vulnerability exists when the Windows kernel fails to properly handle objects in memory, aka '
An elevation of privilege vulnerability exists in Windows when the Win32k component fails to properly handle objects in
An elevation of privilege vulnerability exists in Windows when the Win32k component fails to properly handle objects in
An elevation of privilege vulnerability exists in Windows when the Win32k component fails to properly handle objects in
An elevation of privilege vulnerability exists in Windows when the Win32k component fails to properly handle objects in
An elevation of privilege vulnerability exists when the Windows Universal Plug and Play (UPnP) service improperly allows
A remote code execution vulnerability exists when the Windows Jet Database Engine improperly handles objects in memory,
An elevation of privilege vulnerability exists when the Windows Graphics Component improperly handles objects in memory,
An elevation of privilege vulnerability exists in Windows when the Win32k component fails to properly handle objects in
An elevation of privilege vulnerability exists in Windows Installer because of the way Windows Installer handles certain
An elevation of privilege vulnerability exists when the Windows Data Sharing Service improperly handles file operations,
An elevation of privilege vulnerability exists in the way that the dssvc.dll handles file creation allowing for a file o
An elevation of privilege vulnerability exists in the way that the iphlpsvc.dll handles file creation allowing for a fil
An elevation of privilege vulnerability exists in the way that the StartTileData.dll handles file creation in protected
A remote code execution vulnerability exists when Windows Media Foundation improperly parses specially crafted QuickTime
An elevation of privilege vulnerability exists when the Windows Graphics Component improperly handles objects in memory,
An elevation of privilege vulnerability exists in Windows when the Windows kernel-mode driver fails to properly handle o
An elevation of privilege vulnerability exists when the Windows Graphics Component improperly handles objects in memory,
An elevation of privilege vulnerability exists when the Windows Graphics Component improperly handles objects in memory,
An elevation of privilege vulnerability exists when the Windows Graphics Component improperly handles objects in memory,
A remote code execution vulnerability exists in Microsoft Excel software when the software fails to properly handle obje
Scan for 2019 Vulnerabilities
CyberStrike detects these CVEs across your infrastructure automatically.
Get Started