2018 CVE Vulnerabilities

17,817 CVEs published in 2018.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2018-11008MEDIUM5.5An Incorrect Access Control issue was discovered in K7Computing K7AntiVirus Premium 15.01.00.53.
CVE-2018-11007MEDIUM5.5A Memory Leak issue was discovered in K7Computing K7AntiVirus Premium 15.01.00.53.
CVE-2018-11006MEDIUM5.5An Incorrect Access Control issue was discovered in K7Computing K7AntiVirus Premium 15.01.00.53.
CVE-2018-11005MEDIUM5.5A Memory Leak issue was discovered in K7Computing K7AntiVirus Premium 15.01.00.53.
CVE-2018-18689MEDIUM5.3The Portable Document Format (PDF) specification does not provide any information regarding the concrete procedure of ho...
CVE-2018-18688MEDIUM5.3The Portable Document Format (PDF) specification does not provide any information regarding the concrete procedure of ho...
CVE-2018-25001MEDIUM6.5An issue was discovered in the libpulse-binding crate before 2.5.0 for Rust. proplist::Iterator can cause a use-after-fr...
CVE-2018-15645MEDIUM6.5Improper access control in message routing in Odoo Community 12.0 and earlier and Odoo Enterprise 12.0 and earlier allow...
CVE-2018-15641MEDIUM5.4Cross-site scripting (XSS) issue in web module in Odoo Community 11.0 through 14.0 and Odoo Enterprise 11.0 through 14.0...
CVE-2018-15638MEDIUM5.4Cross-site scripting (XSS) issue in mail module in Odoo Community 13.0 and earlier and Odoo Enterprise 13.0 and earlier,...
CVE-2018-15634MEDIUM6.1Cross-site scripting (XSS) issue in attachment management in Odoo Community 14.0 and earlier and Odoo Enterprise 14.0 an...
CVE-2018-15633MEDIUM6.1Cross-site scripting (XSS) issue in "document" module in Odoo Community 11.0 and earlier and Odoo Enterprise 11.0 and ea...
CVE-2018-16243MEDIUM5.4SolarWinds Database Performance Analyzer (DPA) 11.1.468 and 12.0.3074 have several persistent XSS vulnerabilities, relat...
CVE-2018-21270MEDIUM6.5Versions less than 0.0.6 of the Node.js stringstream module are vulnerable to an out-of-bounds read because of allocatio...
CVE-2018-20803MEDIUM6.5A user authorized to perform database queries may trigger denial of service by issuing specially crafted queries, which ...
CVE-2018-20805MEDIUM6.5A user authorized to perform database queries may trigger denial of service by issuing specially crafted queries, which ...
CVE-2018-20804MEDIUM6.5A user authorized to perform database queries may trigger denial of service by issuing specially crafted applyOps invoca...
CVE-2018-20802MEDIUM6.5A user authorized to perform database queries may trigger denial of service by issuing specially crafted queries with co...
CVE-2018-19956MEDIUM6.1The cross-site scripting vulnerability has been reported to affect earlier versions of Photo Station. If exploited, the ...
CVE-2018-19955MEDIUM6.1The cross-site scripting vulnerability has been reported to affect earlier versions of Photo Station. If exploited, the ...
CVE-2018-19954MEDIUM6.1The cross-site scripting vulnerability has been reported to affect earlier versions of Photo Station. If exploited, the ...
CVE-2018-19951MEDIUM6.1If exploited, this cross-site scripting vulnerability could allow remote attackers to inject malicious code. This issue ...
CVE-2018-19953MEDIUM6.1If exploited, this cross-site scripting vulnerability could allow remote attackers to inject malicious code. QNAP has al...
CVE-2018-19943MEDIUM5.4If exploited, this cross-site scripting vulnerability could allow remote attackers to inject malicious code. QNAP has al...
CVE-2018-4468MEDIUM5.5This issue was addressed by removing additional entitlements. This issue is fixed in macOS Mojave 10.14.1, Security Upda...

Check if your code is affected by 2018 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now