2018 CVE Vulnerabilities

17,817 CVEs published in 2018.

CVE IDSeverityCVSSDescription
CVE-2018-12004Secure keypad is unlocked with secure display still intact in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer E...
CVE-2018-11976ECDSA signature code leaks private keys from secure world to non-secure world in Snapdragon Auto, Snapdragon Compute, Sn...
CVE-2018-11968Improper check before assigning value can lead to integer overflow in Snapdragon Auto, Snapdragon Compute, Snapdragon Co...
CVE-2018-11967Signature verification of the skel library could potentially be disabled as the memory region on the remote subsystem in...
CVE-2018-11953While processing ssid IE length from remote AP, possible out-of-bounds access may occur due to crafted ssid IE length in...
CVE-2018-11949Failure to initialize the extra buffer can lead to an out of buffer access in WLAN function in Snapdragon Auto, Snapdrag...
CVE-2018-11940Lack of check in length before using memcpy in WLAN function can lead to OOB access in Snapdragon Auto, Snapdragon Compu...
CVE-2018-11937Lack of input validation before copying can lead to a buffer over read in WLAN function in Snapdragon Auto, Snapdragon C...
CVE-2018-11936Index of array is processed in a wrong way inside a while loop and result in invalid index (-1 or something else) leads ...
CVE-2018-11930Improper input validation on input data which is used to locate and copy the additional IEs in WLAN function can lead to...
CVE-2018-11928Lack of check on length parameter may cause buffer overflow while processing WMI commands in Snapdragon Auto, Snapdragon...
CVE-2018-11927Improper input validation on input which is used as an array index will lead to an out of bounds issue while processing ...
CVE-2018-11925Data length received from firmware is not validated against the max allowed size which can result in buffer overflow. in...
CVE-2018-11924Improper buffer length validation in WLAN function can lead to a potential integer oveflow issue in Snapdragon Auto, Sna...
CVE-2018-11923Improper buffer length check before copying can lead to integer overflow and then a buffer overflow in WMA event handler...
CVE-2018-11271Improper authentication can happen on Remote command handling due to inappropriate handling of events in Snapdragon Auto...
CVE-2018-10815An issue was discovered in Cloudera Manager before 5.13.4, 5.14.x before 5.14.4, and 5.15.x before 5.15.1. A read-only u...
CVE-2018-19614XSS exists in the /cmdexec/cmdexe?cmd= function in Westermo DR-250 Pre-5162 and DR-260 Pre-5162 routers.
CVE-2018-15664In Docker through 18.06.1-ce-rc2, the API endpoints behind the 'docker cp' command are vulnerable to a symlink-exchange ...
CVE-2018-7857HIGH7.5A CWE-248: Uncaught Exception vulnerability exists in all versions of the Modicon M580, Modicon M340, Modicon Quantum, a...
CVE-2018-7856HIGH7.5A CWE-248: Uncaught Exception vulnerability exists in all versions of the Modicon M580, Modicon M340, Modicon Quantum, a...
CVE-2018-7855HIGH7.5A CWE-248 Uncaught Exception vulnerability exists in all versions of the Modicon M580, Modicon M340, Modicon Quantum, an...
CVE-2018-7854HIGH7.5A CWE-248 Uncaught Exception vulnerability exists in all versions of the Modicon M580, Modicon M340, Modicon Quantum, an...
CVE-2018-7853HIGH7.5A CWE-248: Uncaught Exception vulnerability exists in all versions of the Modicon M580, Modicon M340, Modicon Quantum, a...
CVE-2018-7844HIGH7.5A CWE-200: Information Exposure vulnerability exists in all versions of the Modicon M580, Modicon M340, Modicon Quantum,...

Check if your code is affected by 2018 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now