2018 CVE Vulnerabilities
17,817 CVEs published in 2018.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2018-4197 | — | — | 9.4% | Apr 3, 2019 | A use after free issue was addressed with improved memory management. This issue affected versions prior to iOS 12, tvOS... |
| CVE-2018-4195 | — | — | 1.0% | Apr 3, 2019 | An inconsistent user interface issue was addressed with improved state management. This issue affected versions prior to... |
| CVE-2018-4191 | — | — | 2.2% | Apr 3, 2019 | A memory corruption issue was addressed with improved validation. This issue affected versions prior to iOS 12, tvOS 12,... |
| CVE-2018-4178 | — | — | 0.3% | Apr 3, 2019 | A permissions issue existed in which execute permission was incorrectly granted. This issue was addressed with improved ... |
| CVE-2018-4153 | — | — | 0.9% | Apr 3, 2019 | An injection issue was addressed with improved validation. This issue affected versions prior to macOS Mojave 10.14. |
| CVE-2018-4145 | — | — | 2.1% | Apr 3, 2019 | Multiple memory corruption issues were addressed with improved memory handling. This issue affected versions prior to iO... |
| CVE-2018-4126 | — | — | 1.9% | Apr 3, 2019 | A memory corruption issue was addressed with improved memory handling. This issue affected versions prior to iOS 12, mac... |
| CVE-2018-20506 | — | — | 7.5% | Apr 3, 2019 | SQLite before 3.25.3, when the FTS3 extension is enabled, encounters an integer overflow (and resultant buffer overflow)... |
| CVE-2018-20505 | — | — | 6.8% | Apr 3, 2019 | SQLite 3.25.2, when queries are run on a table with a malformed PRIMARY KEY, allows remote attackers to cause a denial o... |
| CVE-2018-1936 | HIGH | 8.4 | 0.5% | Apr 3, 2019 | IBM DB2 9.7, 10.1, 10.5, and 11.1 libdb2e.so.1 is vulnerable to a stack based buffer overflow, caused by improper bounds... |
| CVE-2018-1913 | MEDIUM | 5.4 | 1.0% | Apr 3, 2019 | IBM DOORS Next Generation (DNG/RRC) 5.0 through 5.0.3 and 6.0 through 6.0.6 is vulnerable to cross-site scripting. This ... |
| CVE-2018-1731 | MEDIUM | 4.8 | 0.9% | Apr 3, 2019 | IBM DOORS Next Generation (DNG/RRC) 5.0 through 5.0.3 and 6.0 through 6.0.6 is vulnerable to cross-site scripting. This ... |
| CVE-2018-18035 | — | — | 1.2% | Apr 2, 2019 | A vulnerability in flashcanvas.swf in OpenEMR before 5.0.1 Patch 6 could allow an unauthenticated, remote attacker to co... |
| CVE-2018-12680 | — | — | 1.5% | Apr 2, 2019 | The Serialize.deserialize() method in CoAPthon 3.1, 4.0.0, 4.0.1, and 4.0.2 mishandles certain exceptions, leading to a ... |
| CVE-2018-12679 | — | — | 1.4% | Apr 2, 2019 | The Serialize.deserialize() method in CoAPthon3 1.0 and 1.0.1 mishandles certain exceptions, leading to a denial of serv... |
| CVE-2018-19275 | — | — | 4.6% | Apr 2, 2019 | The BluStar component in Mitel InAttend before 2.5 SP3 and CMG before 8.4 SP3 Suite Servers has a default password, whic... |
| CVE-2018-15180 | — | — | 0.8% | Apr 2, 2019 | qTest Portal in QASymphony qTest Manager 9.0.0 has an Open Redirect via the /portal/loginform redirect parameter. |
| CVE-2018-4053 | MEDIUM | 5.5 | 0.3% | Apr 2, 2019 | An exploitable local denial-of-service vulnerability exists in the privileged helper tool of GOG Galaxy's Games, version... |
| CVE-2018-4052 | MEDIUM | 5.5 | 0.4% | Apr 2, 2019 | An exploitable local information leak vulnerability exists in the privileged helper tool of GOG Galaxy's Games, version ... |
| CVE-2018-4051 | MEDIUM | 5.5 | 0.3% | Apr 2, 2019 | An exploitable local privilege escalation vulnerability exists in the privileged helper tool of GOG Galaxy's Games, vers... |
| CVE-2018-4049 | HIGH | 7.8 | 0.3% | Apr 2, 2019 | An exploitable local privilege elevation vulnerability exists in the file system permissions of GOG Galaxy's “Games” dir... |
| CVE-2018-3974 | HIGH | 7.8 | 0.5% | Apr 2, 2019 | An exploitable local privilege elevation vulnerability exists in the file system permissions of GOG Galaxy's install dir... |
| CVE-2018-1917 | LOW | 3.5 | 1.5% | Apr 2, 2019 | IBM InfoSphere Information Server 11.3, 11.5, and 11.7 could allow an authenticated user to access JSP files and disclos... |
| CVE-2018-1906 | MEDIUM | 4.3 | 1.9% | Apr 2, 2019 | IBM InfoSphere Information Server 11.3, 11.5, and 11.7could allow an authenticated user to download code using a special... |
| CVE-2018-1874 | MEDIUM | 4.6 | 0.4% | Apr 2, 2019 | IBM API Connect 5.0.0.0 through 5.0.8.5 could display highly sensitive information to an attacker with physical access t... |
Check if your code is affected by 2018 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now