2018 CVE Vulnerabilities
17,817 CVEs published in 2018.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2018-20316 | HIGH | 8.1 | 0.8% | Jan 7, 2021 | Foxit Reader before 9.5, and PhantomPDF before 8.3.10 and 9.x before 9.5, has a proxyDoAction race condition that can ca... |
| CVE-2018-20315 | HIGH | 8.1 | 0.8% | Jan 7, 2021 | Foxit Reader before 9.5, and PhantomPDF before 8.3.10 and 9.x before 9.5, has a race condition that can cause a stack-ba... |
| CVE-2018-20314 | HIGH | 8.1 | 0.8% | Jan 7, 2021 | Foxit Reader before 9.5, and PhantomPDF before 8.3.10 and 9.x before 9.5, has a proxyCheckLicence race condition that ca... |
| CVE-2018-20313 | HIGH | 8.1 | 0.8% | Jan 7, 2021 | Foxit Reader before 9.5, and PhantomPDF before 8.3.10 and 9.x before 9.5, has a proxyPreviewAction race condition that c... |
| CVE-2018-20312 | HIGH | 8.1 | 0.8% | Jan 7, 2021 | Foxit Reader before 9.5, and PhantomPDF before 8.3.10 and 9.x before 9.5, has a proxyDoAction race condition that can ca... |
| CVE-2018-20311 | HIGH | 8.1 | 0.8% | Jan 7, 2021 | Foxit Reader before 9.5, and PhantomPDF before 8.3.10 and 9.x before 9.5, has a proxyCPDFAction race condition that can ... |
| CVE-2018-20310 | HIGH | 8.1 | 0.9% | Jan 7, 2021 | Foxit Reader before 9.5, and PhantomPDF before 8.3.10 and 9.x before 9.5, has a proxyDoAction race condition that can ca... |
| CVE-2018-20309 | HIGH | 8.1 | 0.8% | Jan 7, 2021 | Foxit Reader before 9.5, and PhantomPDF before 8.3.10 and 9.x before 9.5, has a proxyGetAppEdition race condition that c... |
| CVE-2018-19418 | HIGH | 7.8 | 8.0% | Jan 7, 2021 | Foxit PDF ActiveX before 5.5.1 allows remote code execution via command injection because of the lack of a security perm... |
| CVE-2018-25002 | HIGH | 8.8 | 1.4% | Jan 1, 2021 | uploader.php in the KCFinder integration project through 2018-06-01 for Drupal mishandles validation, aka SA-CONTRIB-201... |
| CVE-2018-19944 | HIGH | 7.5 | 0.8% | Dec 31, 2020 | A cleartext transmission of sensitive information vulnerability has been reported to affect certain QTS devices. If expl... |
| CVE-2018-19941 | HIGH | 7.5 | 0.7% | Dec 31, 2020 | A vulnerability has been reported to affect QNAP NAS. If exploited, this vulnerability allows an attacker to access sens... |
| CVE-2018-16795 | HIGH | 8.8 | 0.6% | Dec 31, 2020 | OpenEMR 5.0.1.3 allows Cross-Site Request Forgery (CSRF) via library/ajax and interface/super, as demonstrated by use of... |
| CVE-2018-1000893 | HIGH | 7.5 | 1.0% | Dec 23, 2020 | Bitcoin SV before 0.1.1 allows uncontrolled resource consumption when deserializing transactions. |
| CVE-2018-1000892 | HIGH | 7.5 | 1.0% | Dec 23, 2020 | Bitcoin SV before 0.1.1 allows uncontrolled resource consumption when receiving sendheaders messages. |
| CVE-2018-1000891 | HIGH | 7.5 | 1.0% | Dec 23, 2020 | Bitcoin SV before 0.1.1 allows uncontrolled resource consumption when receiving messages with invalid checksums. |
| CVE-2018-7580 | HIGH | 7.5 | 2.3% | Dec 21, 2020 | Philips Hue is vulnerable to a Denial of Service attack. Sending a SYN flood on port tcp/80 will freeze Philips Hue's hu... |
| CVE-2018-16723 | HIGH | 7.8 | 0.3% | Nov 23, 2020 | In Jingyun Antivirus v2.4.2.39, the driver file (ZySandbox.sys) allows local users to cause a denial of service (BSOD) o... |
| CVE-2018-16722 | HIGH | 7.8 | 0.3% | Nov 23, 2020 | In Jingyun Antivirus v2.4.2.39, the driver file (ZySandbox.sys) allows local users to cause a denial of service (BSOD) o... |
| CVE-2018-16721 | HIGH | 7.8 | 0.3% | Nov 23, 2020 | In Jingyun Antivirus v2.4.2.39, the driver file (ZySandbox.sys) allows local users to cause a denial of service (BSOD) o... |
| CVE-2018-16720 | HIGH | 7.8 | 0.3% | Nov 23, 2020 | In Jingyun Antivirus v2.4.2.39, the driver file (ZySandbox.sys) allows local users to cause a denial of service (BSOD) o... |
| CVE-2018-16719 | HIGH | 7.8 | 0.3% | Nov 23, 2020 | In Jingyun Antivirus v2.4.2.39, the driver file (hookbody.sys) allows local users to cause a denial of service (BSOD) or... |
| CVE-2018-19952 | HIGH | 7.5 | 1.3% | Nov 2, 2020 | If exploited, this SQL injection vulnerability could allow remote attackers to obtain application information. This issu... |
| CVE-2018-4474 | HIGH | 7.5 | 1.7% | Oct 27, 2020 | A memory consumption issue was addressed with improved memory handling. This issue is fixed in iCloud for Windows 7.7, w... |
| CVE-2018-4467 | HIGH | 7.8 | 0.8% | Oct 27, 2020 | A memory corruption issue was addressed with improved state management. This issue is fixed in macOS Mojave 10.14.3, Sec... |
Check if your code is affected by 2018 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now