2018 CVE Vulnerabilities

17,817 CVEs published in 2018.

Filter:CRITICALClear
CVE IDSeverityCVSSDescription
CVE-2018-5401CRITICAL9.1The Auto-Maskin DCU 210E, RP-210E, and Marine Pro Observer Android App transmit sensitive or security-critical data in c...
CVE-2018-5400CRITICAL9.1The Auto-Maskin products utilize an undocumented custom protocol to set up Modbus communications with other devices with...
CVE-2018-5399CRITICAL9.4The Auto-Maskin DCU 210E firmware contains an undocumented Dropbear SSH server, v2015.55, configured to listen on Port 2...
CVE-2018-1000804CRITICAL9.8contiki-ng version 4 contains a Buffer Overflow vulnerability in AQL (Antelope Query Language) database engine that can ...
CVE-2018-14818CRITICAL9.8WECON Technology Co., Ltd. PI Studio HMI versions 4.1.9 and prior and PI Studio versions 4.2.34 and prior have a stack-b...
CVE-2018-15763CRITICAL9Pivotal Container Service, versions prior to 1.2.0, contains an information disclosure vulnerability which exposes IaaS ...
CVE-2018-1264CRITICAL9.1Cloud Foundry Log Cache, versions prior to 1.1.1, logs its UAA client secret on startup as part of its envstruct report....
CVE-2018-15387CRITICAL9.8A vulnerability in the Cisco SD-WAN Solution could allow an unauthenticated, remote attacker to bypass certificate valid...
CVE-2018-15386CRITICAL9.8A vulnerability in Cisco Digital Network Architecture (DNA) Center could allow an unauthenticated, remote attacker to by...
CVE-2018-0448CRITICAL9.8A vulnerability in the identity management service of Cisco Digital Network Architecture (DNA) Center could allow an una...
CVE-2018-12470CRITICAL9.8A SQL Injection in the RegistrationSharing module of SUSE Linux SMT allows remote attackers to cause execute arbitrary S...
CVE-2018-17825CRITICAL9.8An issue was discovered in AdPlug 2.3.1. There are several double-free vulnerabilities in the CEmuopl class in emuopl.cp...
CVE-2018-15764CRITICAL9.8Dell EMC ESRS Policy Manager versions 6.8 and prior contain a remote code execution vulnerability due to improper config...
CVE-2018-16659CRITICAL9.8An issue was discovered in Rausoft ID.prove 2.95. The login page allows SQL injection via Microsoft SQL Server stacked q...
CVE-2018-17410CRITICAL9.8Horus CMS allows SQL Injection, as demonstrated by a request to the /busca or /home URI.
CVE-2018-14823CRITICAL9.8Fuji Electric V-Server 4.0.3.0 and prior, A stack-based buffer overflow vulnerability has been identified, which may all...
CVE-2018-14813CRITICAL9.8Fuji Electric V-Server 4.0.3.0 and prior, A heap-based buffer overflow vulnerability has been identified, which may allo...
CVE-2018-3972CRITICAL9.8An exploitable code execution vulnerability exists in the Levin deserialization functionality of the Epee library, as us...
CVE-2018-15965CRITICAL9.8Adobe ColdFusion versions July 12 release (2018.0.0.310739), Update 6 and earlier, and Update 14 and earlier have a dese...
CVE-2018-15961CRITICAL9.8Adobe ColdFusion versions July 12 release (2018.0.0.310739), Update 6 and earlier, and Update 14 and earlier have an unr...
CVE-2018-15959CRITICAL9.8Adobe ColdFusion versions July 12 release (2018.0.0.310739), Update 6 and earlier, and Update 14 and earlier have a dese...
CVE-2018-15958CRITICAL9.8Adobe ColdFusion versions July 12 release (2018.0.0.310739), Update 6 and earlier, and Update 14 and earlier have a dese...
CVE-2018-15957CRITICAL9.8Adobe ColdFusion versions July 12 release (2018.0.0.310739), Update 6 and earlier, and Update 14 and earlier have a dese...
CVE-2018-3877CRITICAL9.9An exploitable buffer overflow vulnerability exists in the credentials handler of video-core's HTTP server of Samsung Sm...
CVE-2018-3874CRITICAL9.9An exploitable buffer overflow vulnerability exists in the credentials handler of video-core's HTTP server of Samsung Sm...

Check if your code is affected by 2018 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now