2018 CVE Vulnerabilities
17,817 CVEs published in 2018.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2018-5401 | CRITICAL | 9.1 | 0.9% | Oct 8, 2018 | The Auto-Maskin DCU 210E, RP-210E, and Marine Pro Observer Android App transmit sensitive or security-critical data in c... |
| CVE-2018-5400 | CRITICAL | 9.1 | 0.7% | Oct 8, 2018 | The Auto-Maskin products utilize an undocumented custom protocol to set up Modbus communications with other devices with... |
| CVE-2018-5399 | CRITICAL | 9.4 | 2.1% | Oct 8, 2018 | The Auto-Maskin DCU 210E firmware contains an undocumented Dropbear SSH server, v2015.55, configured to listen on Port 2... |
| CVE-2018-1000804 | CRITICAL | 9.8 | 6.3% | Oct 8, 2018 | contiki-ng version 4 contains a Buffer Overflow vulnerability in AQL (Antelope Query Language) database engine that can ... |
| CVE-2018-14818 | CRITICAL | 9.8 | 3.5% | Oct 8, 2018 | WECON Technology Co., Ltd. PI Studio HMI versions 4.1.9 and prior and PI Studio versions 4.2.34 and prior have a stack-b... |
| CVE-2018-15763 | CRITICAL | 9 | 1.0% | Oct 5, 2018 | Pivotal Container Service, versions prior to 1.2.0, contains an information disclosure vulnerability which exposes IaaS ... |
| CVE-2018-1264 | CRITICAL | 9.1 | 1.8% | Oct 5, 2018 | Cloud Foundry Log Cache, versions prior to 1.1.1, logs its UAA client secret on startup as part of its envstruct report.... |
| CVE-2018-15387 | CRITICAL | 9.8 | 1.1% | Oct 5, 2018 | A vulnerability in the Cisco SD-WAN Solution could allow an unauthenticated, remote attacker to bypass certificate valid... |
| CVE-2018-15386 | CRITICAL | 9.8 | 3.4% | Oct 5, 2018 | A vulnerability in Cisco Digital Network Architecture (DNA) Center could allow an unauthenticated, remote attacker to by... |
| CVE-2018-0448 | CRITICAL | 9.8 | 2.1% | Oct 5, 2018 | A vulnerability in the identity management service of Cisco Digital Network Architecture (DNA) Center could allow an una... |
| CVE-2018-12470 | CRITICAL | 9.8 | 2.0% | Oct 4, 2018 | A SQL Injection in the RegistrationSharing module of SUSE Linux SMT allows remote attackers to cause execute arbitrary S... |
| CVE-2018-17825 | CRITICAL | 9.8 | 2.3% | Oct 1, 2018 | An issue was discovered in AdPlug 2.3.1. There are several double-free vulnerabilities in the CEmuopl class in emuopl.cp... |
| CVE-2018-15764 | CRITICAL | 9.8 | 5.3% | Sep 28, 2018 | Dell EMC ESRS Policy Manager versions 6.8 and prior contain a remote code execution vulnerability due to improper config... |
| CVE-2018-16659 | CRITICAL | 9.8 | 2.7% | Sep 28, 2018 | An issue was discovered in Rausoft ID.prove 2.95. The login page allows SQL injection via Microsoft SQL Server stacked q... |
| CVE-2018-17410 | CRITICAL | 9.8 | 1.7% | Sep 26, 2018 | Horus CMS allows SQL Injection, as demonstrated by a request to the /busca or /home URI. |
| CVE-2018-14823 | CRITICAL | 9.8 | 3.9% | Sep 26, 2018 | Fuji Electric V-Server 4.0.3.0 and prior, A stack-based buffer overflow vulnerability has been identified, which may all... |
| CVE-2018-14813 | CRITICAL | 9.8 | 3.9% | Sep 26, 2018 | Fuji Electric V-Server 4.0.3.0 and prior, A heap-based buffer overflow vulnerability has been identified, which may allo... |
| CVE-2018-3972 | CRITICAL | 9.8 | 3.7% | Sep 26, 2018 | An exploitable code execution vulnerability exists in the Levin deserialization functionality of the Epee library, as us... |
| CVE-2018-15965 | CRITICAL | 9.8 | 25.9% | Sep 25, 2018 | Adobe ColdFusion versions July 12 release (2018.0.0.310739), Update 6 and earlier, and Update 14 and earlier have a dese... |
| CVE-2018-15961 | CRITICAL | 9.8 | 100.0% | Sep 25, 2018 | Adobe ColdFusion versions July 12 release (2018.0.0.310739), Update 6 and earlier, and Update 14 and earlier have an unr... |
| CVE-2018-15959 | CRITICAL | 9.8 | 25.9% | Sep 25, 2018 | Adobe ColdFusion versions July 12 release (2018.0.0.310739), Update 6 and earlier, and Update 14 and earlier have a dese... |
| CVE-2018-15958 | CRITICAL | 9.8 | 25.9% | Sep 25, 2018 | Adobe ColdFusion versions July 12 release (2018.0.0.310739), Update 6 and earlier, and Update 14 and earlier have a dese... |
| CVE-2018-15957 | CRITICAL | 9.8 | 28.2% | Sep 25, 2018 | Adobe ColdFusion versions July 12 release (2018.0.0.310739), Update 6 and earlier, and Update 14 and earlier have a dese... |
| CVE-2018-3877 | CRITICAL | 9.9 | 1.8% | Sep 21, 2018 | An exploitable buffer overflow vulnerability exists in the credentials handler of video-core's HTTP server of Samsung Sm... |
| CVE-2018-3874 | CRITICAL | 9.9 | 1.8% | Sep 21, 2018 | An exploitable buffer overflow vulnerability exists in the credentials handler of video-core's HTTP server of Samsung Sm... |
Check if your code is affected by 2018 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now