2018 CVE Vulnerabilities
17,817 CVEs published in 2018.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2018-18940 | — | — | 1.4% | Jan 31, 2019 | servlet/SnoopServlet (a servlet installed by default) in Netscape Enterprise 3.63 has reflected XSS via an arbitrary par... |
| CVE-2018-15517 | — | — | 44.1% | Jan 31, 2019 | The MailConnect feature on D-Link Central WiFiManager CWM-100 1.03 r0098 devices is intended to check a connection to an... |
| CVE-2018-15516 | — | — | 2.0% | Jan 31, 2019 | The FTP service on D-Link Central WiFiManager CWM-100 1.03 r0098 devices allows remote attackers to conduct a PORT comma... |
| CVE-2018-15515 | — | — | 1.7% | Jan 31, 2019 | The CaptivelPortal service on D-Link Central WiFiManager CWM-100 1.03 r0098 devices will load a Trojan horse "quserex.dl... |
| CVE-2018-17926 | — | — | 0.8% | Jan 31, 2019 | The product M2M ETHERNET (FW Versions 2.22 and prior, ETH-FW Versions 1.01 and prior) is vulnerable in that an attacker ... |
| CVE-2018-11790 | — | — | 1.0% | Jan 31, 2019 | When loading a document with Apache Open Office 4.1.5 and earlier with smaller end line termination than the operating s... |
| CVE-2018-17199 | — | — | 20.0% | Jan 30, 2019 | In Apache HTTP Server 2.4 release 2.4.37 and prior, mod_session checks the session expiry time before decoding the sessi... |
| CVE-2018-19027 | — | — | 1.4% | Jan 30, 2019 | Three type confusion vulnerabilities exist in CX-One Versions 4.50 and prior and CX-Protocol Versions 2.0 and prior when... |
| CVE-2018-19858 | — | — | 2.6% | Jan 30, 2019 | PrinceXML, versions 10 and below, is vulnerable to XXE due to the lack of protection against external entities. If an at... |
| CVE-2018-19782 | — | — | 4.4% | Jan 30, 2019 | Multiple cross-site scripting (XSS) vulnerabilities in GET requests in FreshRSS 1.11.1 allow remote attackers to inject ... |
| CVE-2018-18895 | — | — | — | Jan 30, 2019 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2014-3004. Reason: This candidate is a duplicate of... |
| CVE-2018-15136 | — | — | 1.0% | Jan 30, 2019 | TitanHQ SpamTitan before 7.01 has Improper input validation. This allows internal attackers to bypass the anti-spam filt... |
| CVE-2018-12611 | — | — | 1.2% | Jan 30, 2019 | OX App Suite 7.8.4 and earlier allows Directory Traversal. |
| CVE-2018-12610 | — | — | 1.2% | Jan 30, 2019 | OX App Suite 7.8.4 and earlier allows Information Exposure. |
| CVE-2018-12609 | — | — | 1.0% | Jan 30, 2019 | OX App Suite 7.8.4 and earlier allows Server-Side Request Forgery. |
| CVE-2018-18985 | — | — | 1.0% | Jan 29, 2019 | Tridium Niagara Enterprise Security 2.3u1, all versions prior to 2.3.118.6, Niagara AX 3.8u4, all versions prior to 3.8.... |
| CVE-2018-10612 | — | — | 1.3% | Jan 29, 2019 | In 3S-Smart Software Solutions GmbH CODESYS Control V3 products prior to version 3.5.14.0, user access management and co... |
| CVE-2018-19723 | — | — | 3.6% | Jan 28, 2019 | Adobe Acrobat and Reader versions 2018.011.20058 and earlier, 2017.011.30099 and earlier, and 2015.006.30448 and earlier... |
| CVE-2018-19721 | — | — | 2.6% | Jan 28, 2019 | Adobe Acrobat and Reader versions 2018.011.20058 and earlier, 2017.011.30099 and earlier, and 2015.006.30448 and earlier... |
| CVE-2018-19014 | — | — | 0.8% | Jan 28, 2019 | Drager Infinity Delta, Infinity Delta, all versions, Delta XL, all versions, Kappa, all version, and Infinity Explorer C... |
| CVE-2018-19010 | — | — | 0.8% | Jan 28, 2019 | Drager Infinity Delta, Infinity Delta, all versions, Delta XL, all versions, Kappa, all version, and Infinity Explorer C... |
| CVE-2018-19012 | — | — | 0.4% | Jan 28, 2019 | Drager Infinity Delta, Infinity Delta, all versions, Delta XL, all versions, Kappa, all version, and Infinity Explorer C... |
| CVE-2018-19728 | — | — | 3.0% | Jan 28, 2019 | Adobe Acrobat and Reader versions 2019.008.20081 and earlier, 2019.008.20080 and earlier, 2019.008.20081 and earlier, 20... |
| CVE-2018-19727 | — | — | 1.9% | Jan 28, 2019 | Adobe Experience Manager versions 6.4, 6.3, 6.2, 6.1, and 6.0 have a reflected cross-site scripting vulnerability. Succe... |
| CVE-2018-19726 | — | — | 1.9% | Jan 28, 2019 | Adobe Experience Manager versions 6.4, 6.3, 6.2, 6.1, and 6.0 have a stored cross-site scripting vulnerability. Successf... |
Check if your code is affected by 2018 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now