2018 CVE Vulnerabilities

17,817 CVEs published in 2018.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2018-25021HIGH7.5The TCP Server module in toxcore before 0.2.8 doesn't free the TCP priority queue under certain conditions, which allows...
CVE-2018-25020HIGH7.8The BPF subsystem in the Linux kernel before 4.17 mishandles situations with a long jump over an instruction sequence wh...
CVE-2018-6122HIGH8.8Type confusion in WebAssembly in Google Chrome prior to 66.0.3359.139 allowed a remote attacker to potentially exploit h...
CVE-2018-25019HIGH7.5The LearnDash LMS WordPress plugin before 2.5.4 does not have any authorisation and validation of the file to be uploade...
CVE-2018-16060HIGH7.5Mitsubishi Electric Europe B.V. SmartRTU devices allow remote attackers to obtain sensitive information (directory listi...
CVE-2018-10790HIGH7.5The AP4_CttsAtom class in Core/Ap4CttsAtom.cpp in Bento4 1.5.1.0 allows remote attackers to cause a denial of service (a...
CVE-2018-25018HIGH7.8UnRAR 5.6.1.7 through 5.7.4 and 6.0.3 has an out-of-bounds write during a memcpy in QuickOpen::ReadRaw when called from ...
CVE-2018-25015HIGH7.8An issue was discovered in the Linux kernel before 4.14.16. There is a use-after-free in net/sctp/socket.c for a held lo...
CVE-2018-10195HIGH7.1lrzsz before version 0.12.21~rc can leak information to the receiving side due to an incorrect length check in the funct...
CVE-2018-16497HIGH7.8In Versa Analytics, the cron jobs are used for scheduling tasks by executing commands at specific dates and times on the...
CVE-2018-16495HIGH8.8In VOS user session identifier (authentication token) is issued to the browser prior to authentication but is not change...
CVE-2018-16494HIGH8.8In VOS and overly permissive "umask" may allow for authorized users of the server to gain unauthorized access through in...
CVE-2018-10868HIGH7.5redhat-certification 7 does not properly restrict the number of recursive definitions of entities in XML documents, allo...
CVE-2018-10865HIGH7.5It was discovered that the /configuration view of redhat-certification 7 does not perform an authorization check and it ...
CVE-2018-10863HIGH7.5It was discovered that redhat-certification 7 is not properly configured and it lists all files and directories in the /...
CVE-2018-1110HIGH7.5A flaw was found in knot-resolver before version 2.3.0. Malformed DNS messages may cause denial of service.
CVE-2018-9333HIGH7.8K7Computing Pvt Ltd K7AntiVirus Premium 15.1.0.53 is affected by: Buffer Overflow. The impact is: execute arbitrary code...
CVE-2018-9332HIGH7.8K7Computing Pvt Ltd K7AntiVirus Premium 15.01.00.53 is affected by: Incorrect Access Control. The impact is: gain privil...
CVE-2018-8726HIGH7.8K7Computing Pvt Ltd K7Antivirus Premium 15.1.0.53 is affected by: Buffer Overflow. The impact is: execute arbitrary code...
CVE-2018-8725HIGH7.8K7Computing Pvt Ltd K7AntiVirus Premium 15.01.00.53 is affected by: Buffer Overflow. The impact is: execute arbitrary co...
CVE-2018-8724HIGH7.8K7Computing Pvt Ltd K7AntiVirus Premium 15.1.0.53 is affected by: Incorrect Access Control. The impact is: gain privileg...
CVE-2018-8044HIGH7.8K7Computing Pvt Ltd K7Antivirus Premium 15.1.0.53 is affected by: Incorrect Access Control. The impact is: Local Process...
CVE-2018-11246HIGH7.5K7TSMngr.exe in K7Computing K7AntiVirus Premium 15.1.0.53 has a Memory Leak.
CVE-2018-11010HIGH7.8A Buffer Overflow issue was discovered in K7Computing K7AntiVirus Premium 15.01.00.53.
CVE-2018-11009HIGH7.8A Buffer Overflow issue was discovered in K7Computing K7AntiVirus Premium 15.01.00.53.

Check if your code is affected by 2018 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now