2018 CVE Vulnerabilities
17,817 CVEs published in 2018.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2018-11008 | MEDIUM | 5.5 | 0.6% | Jan 11, 2021 | An Incorrect Access Control issue was discovered in K7Computing K7AntiVirus Premium 15.01.00.53. |
| CVE-2018-11007 | MEDIUM | 5.5 | 0.7% | Jan 11, 2021 | A Memory Leak issue was discovered in K7Computing K7AntiVirus Premium 15.01.00.53. |
| CVE-2018-11006 | MEDIUM | 5.5 | 0.7% | Jan 11, 2021 | An Incorrect Access Control issue was discovered in K7Computing K7AntiVirus Premium 15.01.00.53. |
| CVE-2018-11005 | MEDIUM | 5.5 | 0.7% | Jan 11, 2021 | A Memory Leak issue was discovered in K7Computing K7AntiVirus Premium 15.01.00.53. |
| CVE-2018-18689 | MEDIUM | 5.3 | 3.7% | Jan 7, 2021 | The Portable Document Format (PDF) specification does not provide any information regarding the concrete procedure of ho... |
| CVE-2018-18688 | MEDIUM | 5.3 | 1.1% | Jan 7, 2021 | The Portable Document Format (PDF) specification does not provide any information regarding the concrete procedure of ho... |
| CVE-2018-25001 | MEDIUM | 6.5 | 1.0% | Dec 31, 2020 | An issue was discovered in the libpulse-binding crate before 2.5.0 for Rust. proplist::Iterator can cause a use-after-fr... |
| CVE-2018-15645 | MEDIUM | 6.5 | 0.9% | Dec 22, 2020 | Improper access control in message routing in Odoo Community 12.0 and earlier and Odoo Enterprise 12.0 and earlier allow... |
| CVE-2018-15641 | MEDIUM | 5.4 | 0.7% | Dec 22, 2020 | Cross-site scripting (XSS) issue in web module in Odoo Community 11.0 through 14.0 and Odoo Enterprise 11.0 through 14.0... |
| CVE-2018-15638 | MEDIUM | 5.4 | 0.7% | Dec 22, 2020 | Cross-site scripting (XSS) issue in mail module in Odoo Community 13.0 and earlier and Odoo Enterprise 13.0 and earlier,... |
| CVE-2018-15634 | MEDIUM | 6.1 | 0.9% | Dec 22, 2020 | Cross-site scripting (XSS) issue in attachment management in Odoo Community 14.0 and earlier and Odoo Enterprise 14.0 an... |
| CVE-2018-15633 | MEDIUM | 6.1 | 0.9% | Dec 22, 2020 | Cross-site scripting (XSS) issue in "document" module in Odoo Community 11.0 and earlier and Odoo Enterprise 11.0 and ea... |
| CVE-2018-16243 | MEDIUM | 5.4 | 1.4% | Dec 15, 2020 | SolarWinds Database Performance Analyzer (DPA) 11.1.468 and 12.0.3074 have several persistent XSS vulnerabilities, relat... |
| CVE-2018-21270 | MEDIUM | 6.5 | 3.6% | Dec 3, 2020 | Versions less than 0.0.6 of the Node.js stringstream module are vulnerable to an out-of-bounds read because of allocatio... |
| CVE-2018-20803 | MEDIUM | 6.5 | 1.3% | Nov 23, 2020 | A user authorized to perform database queries may trigger denial of service by issuing specially crafted queries, which ... |
| CVE-2018-20805 | MEDIUM | 6.5 | 1.2% | Nov 23, 2020 | A user authorized to perform database queries may trigger denial of service by issuing specially crafted queries, which ... |
| CVE-2018-20804 | MEDIUM | 6.5 | 1.2% | Nov 23, 2020 | A user authorized to perform database queries may trigger denial of service by issuing specially crafted applyOps invoca... |
| CVE-2018-20802 | MEDIUM | 6.5 | 1.5% | Nov 23, 2020 | A user authorized to perform database queries may trigger denial of service by issuing specially crafted queries with co... |
| CVE-2018-19956 | MEDIUM | 6.1 | 0.9% | Nov 2, 2020 | The cross-site scripting vulnerability has been reported to affect earlier versions of Photo Station. If exploited, the ... |
| CVE-2018-19955 | MEDIUM | 6.1 | 0.9% | Nov 2, 2020 | The cross-site scripting vulnerability has been reported to affect earlier versions of Photo Station. If exploited, the ... |
| CVE-2018-19954 | MEDIUM | 6.1 | 0.9% | Nov 2, 2020 | The cross-site scripting vulnerability has been reported to affect earlier versions of Photo Station. If exploited, the ... |
| CVE-2018-19951 | MEDIUM | 6.1 | 0.8% | Nov 2, 2020 | If exploited, this cross-site scripting vulnerability could allow remote attackers to inject malicious code. This issue ... |
| CVE-2018-19953 | MEDIUM | 6.1 | 23.9% | Oct 28, 2020 | If exploited, this cross-site scripting vulnerability could allow remote attackers to inject malicious code. QNAP has al... |
| CVE-2018-19943 | MEDIUM | 5.4 | 17.7% | Oct 28, 2020 | If exploited, this cross-site scripting vulnerability could allow remote attackers to inject malicious code. QNAP has al... |
| CVE-2018-4468 | MEDIUM | 5.5 | 0.7% | Oct 27, 2020 | This issue was addressed by removing additional entitlements. This issue is fixed in macOS Mojave 10.14.1, Security Upda... |
Check if your code is affected by 2018 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now