17,305 vulnerabilities published in 2019
There is an improper access control vulnerability in Huawei Share. The software does not properly restrict access to cer
P30 smartphones with versions earlier than ELLE-AL00B 9.1.0.193(C00E190R1P21) have an out of bounds read vulnerability.
P30, P30 Pro, Mate 20 smartphones with software of versions earlier than ELLE-AL00B 9.1.0.193(C00E190R2P1), versions ear
HiSuite with 9.1.0.305 and earlier versions and 9.1.0.305(MAC) and earlier versions and HwBackup with earlier versions b
Huawei Atlas 300, Atlas 500 have a buffer overflow vulnerability. A local, authenticated attacker may craft specific par
When GNOME Dia before 2019-11-27 is launched with a filename argument that is not a valid codepoint in the current encod
relay_open in kernel/relay.c in the Linux kernel through 5.4.1 allows local users to cause a denial of service (such as
An issue was discovered in OpenSC through 0.19.0 and 0.20.x through 0.20.0-rc3. libopensc/card-setcos.c has an incorrect
SMPlayer 19.5.0 has a buffer overflow via a long .m3u file.
An issue was discovered in SALTO ProAccess SPACE 5.4.3.0. The product's webserver runs as a Windows service with local S
Dell Command Update versions prior to 3.1 contain an Arbitrary File Deletion Vulnerability. A local authenticated malici
Dell Command Update versions prior to 3.1 contain an Arbitrary File Deletion Vulnerability. A local authenticated malici
The XML content type entity deserializer in Apache Olingo versions 4.0.0 to 4.6.0 is not configured to deny the resoluti
read_textobject in read.c in Xfig fig2dev 3.2.7b has a stack-based buffer overflow because of an incorrect sscanf.
OpenShift haproxy cartridge: predictable /tmp in set-proxy connection hook which could facilitate DoS
OpenStack nova base images permissions are world readable
An Information Disclosure vulnerability exists in the Jasig Project php-pear-CAS 1.2.2 package in the /tmp directory. Th
In checkOperation of AppOpsService.java, there is a possible bypass of user interaction requirements due to mishandling
In device_class_to_int of device_class.cc, there is a possible out of bounds read due to improper casting. This could le
In array_find of array.c, there is a possible out-of-bounds read due to an incorrect bounds check. This could lead to lo
In updateWidget of BaseWidgetProvider.java, there is a possible leak of user data due to a missing permission check. Thi
In various functions of RecentLocationApps.java, DevicePolicyManagerService.java, and RecognitionService.java, there is
alter.c in SQLite through 3.30.1 allows attackers to trigger infinite recursion via certain types of self-referential vi
Perl module Data::UUID from CPAN version 1.219 vulnerable to symlink attacks
An information disclosure vulnerability exists in Microsoft Access software when the software fails to properly handle o
An information disclosure vulnerability exists in Microsoft Access software when the software fails to properly handle o
An information disclosure vulnerability exists when Microsoft Excel improperly discloses the contents of its memory, aka
An information disclosure vulnerability exists when the win32k component improperly provides kernel information, aka 'Wi
An information disclosure vulnerability exists when the Windows kernel improperly handles objects in memory, aka 'Window
An information disclosure vulnerability exists when the Windows kernel improperly handles objects in memory, aka 'Window
make_arrow in arrow.c in Xfig fig2dev 3.2.7b allows a segmentation fault and out-of-bounds write because of an integer o
Use after free issue occurs when command destructors access dynamically allocated response buffer which is already deall
An unprivileged application can allocate GPU memory by calling memory allocation ioctl function and can exhaust all the
Null pointer dereference issue in kernel due to missing check related to LLC support in GPU in Snapdragon Auto, Snapdrag
Driver may access an invalid address while processing IO control due to lack of check of address validation in Snapdrago
A vulnerability has been identified in Control Center Server (CCS) (All versions < V1.5.0), Control Center Server (CCS)
The Linux kernel before 5.4.2 mishandles ext4_expand_extra_isize, as demonstrated by use-after-free errors in __ext4_exp
rubygem-hammer_cli_foreman: File /etc/hammer/cli.modules.d/foreman.yml world readable
There is a path traversal vulnerability in several Huawei smartphones. The system does not sufficiently validate certain
Certain Huawei products (AP2000;IPS Module;NGFW Module;NIP6300;NIP6600;NIP6800;S5700;SVN5600;SVN5800;SVN5800-C;SeMG9811;
Certain Huawei products (AP2000;IPS Module;NGFW Module;NIP6300;NIP6600;NIP6800;S5700;SVN5600;SVN5800;SVN5800-C;SeMG9811;
Certain Huawei products (AP2000;IPS Module;NGFW Module;NIP6300;NIP6600;NIP6800;S5700;SVN5600;SVN5800;SVN5800-C;SeMG9811;
Certain Huawei products (AP2000;IPS Module;NGFW Module;NIP6300;NIP6600;NIP6800;S5700;SVN5600;SVN5800;SVN5800-C;SeMG9811;
read_colordef in read.c in Xfig fig2dev 3.2.7b has an out-of-bounds write.
CFME (CloudForms Management Engine) 5: RHN account information is logged to top_output.log during registration
IBM API Connect 2018.1 through 2018.4.1.7 Developer Portal's user registration page does not disable password autocomple
Insufficient memory protection for Intel(R) Ethernet I218 Adapter driver for Windows* 10 before version 24.1 may allow a
Improper conditions check in the Linux kernel driver for the Intel(R) FPGA SDK for OpenCL(TM) Pro Edition before version
Null pointer dereference in the FPGA kernel driver for Intel(R) Quartus(R) Prime Pro Edition before version 19.3 may all
The JBIG2Decode library in npdf.dll in Nitro Free PDF Reader 12.0.0.112 has a CAPPDAnnotHandlerUtils::PDAnnotHandlerDest
Scan for 2019 Vulnerabilities
CyberStrike detects these CVEs across your infrastructure automatically.
Get Started