2018 CVE Vulnerabilities
17,817 CVEs published in 2018.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2018-17996 | — | — | 3.0% | Mar 21, 2019 | LayerBB before 1.1.3 allows CSRF for adding a user via admin/new_user.php, deleting a user via admin/members.php/delete_... |
| CVE-2018-17502 | MEDIUM | 4 | 0.3% | Mar 21, 2019 | The Receptionist for iPad could allow a local attacker to obtain sensitive information, caused by an error in the contac... |
| CVE-2018-17500 | LOW | 2.9 | 0.3% | Mar 21, 2019 | Envoy Passport for Android and Envoy Passport for iPhone could allow a local attacker to obtain sensitive information, c... |
| CVE-2018-17499 | LOW | 2.9 | 0.2% | Mar 21, 2019 | Envoy Passport for Android and Envoy Passport for iPhone could allow a local attacker to obtain sensitive information, c... |
| CVE-2018-17497 | HIGH | 8.4 | 0.4% | Mar 21, 2019 | eVisitorPass contains default administrative credentials. An attacker could exploit this vulnerability to gain full acce... |
| CVE-2018-17496 | HIGH | 8.4 | 0.4% | Mar 21, 2019 | eVisitorPass could allow a local attacker to gain elevated privileges on the system, caused by an error while in kiosk m... |
| CVE-2018-17495 | HIGH | 8.4 | 0.4% | Mar 21, 2019 | eVisitorPass could allow a local attacker to gain elevated privileges on the system, caused by an error with the Virtual... |
| CVE-2018-17494 | HIGH | 8.4 | 0.4% | Mar 21, 2019 | eVisitorPass could allow a local attacker to gain elevated privileges on the system, caused by an error with the Virtual... |
| CVE-2018-17493 | HIGH | 8.4 | 0.4% | Mar 21, 2019 | eVisitorPass could allow a local attacker to gain elevated privileges on the system, caused by an error with the Fullscr... |
| CVE-2018-17492 | HIGH | 8.4 | 0.3% | Mar 21, 2019 | EasyLobby Solo contains default administrative credentials. An attacker could exploit this vulnerability to gain full ac... |
| CVE-2018-17491 | HIGH | 8.4 | 0.3% | Mar 21, 2019 | EasyLobby Solo could allow a local attacker to gain elevated privileges on the system. By visiting the kiosk and typing ... |
| CVE-2018-17490 | HIGH | 7.7 | 0.3% | Mar 21, 2019 | EasyLobby Solo is vulnerable to a denial of service. By visiting the kiosk and accessing the task manager, a local attac... |
| CVE-2018-17489 | LOW | 2.9 | 0.2% | Mar 21, 2019 | EasyLobby Solo could allow a local attacker to obtain sensitive information, caused by the storing of the social securit... |
| CVE-2018-17488 | HIGH | 8.4 | 0.4% | Mar 21, 2019 | Lobby Track Desktop could allow a local attacker to gain elevated privileges on the system, caused by an error in the pr... |
| CVE-2018-17487 | HIGH | 8.4 | 0.4% | Mar 21, 2019 | Lobby Track Desktop could allow a local attacker to gain elevated privileges on the system, caused by an error in the pr... |
| CVE-2018-17486 | LOW | 2.9 | 0.3% | Mar 21, 2019 | Lobby Track Desktop could allow a local attacker to bypass security restrictions, caused by an error in the find visitor... |
| CVE-2018-17485 | HIGH | 8.4 | 0.4% | Mar 21, 2019 | Lobby Track Desktop contains default administrative credentials. An attacker could exploit this vulnerability to gain fu... |
| CVE-2018-17484 | MEDIUM | 4 | 0.3% | Mar 21, 2019 | Lobby Track Desktop could allow a local attacker to obtain sensitive information, caused by an error in Sample Database.... |
| CVE-2018-17483 | LOW | 2.9 | 0.3% | Mar 21, 2019 | Lobby Track Desktop could allow a local attacker to obtain sensitive information, caused by an error in Reports while in... |
| CVE-2018-17482 | MEDIUM | 4 | 0.4% | Mar 21, 2019 | Lobby Track Desktop could allow a local attacker to obtain sensitive information, caused by an error in Reports while in... |
| CVE-2018-17167 | — | — | 0.6% | Mar 21, 2019 | PrinterOn Enterprise 4.1.4 suffers from multiple authenticated stored XSS vulnerabilities via the (1) "Machine Host Name... |
| CVE-2018-16789 | — | — | 6.0% | Mar 21, 2019 | libhttp/url.c in shellinabox through 2.20 has an implementation flaw in the HTTP request parsing logic. By sending a cra... |
| CVE-2018-16563 | — | — | 1.2% | Mar 21, 2019 | A vulnerability has been identified in Firmware variant IEC 61850 for EN100 Ethernet module (All versions < V4.35), Firm... |
| CVE-2018-16519 | — | — | 1.9% | Mar 21, 2019 | COYO 9.0.8, 10.0.11 and 12.0.4 has cross-site scripting (XSS) via URLs used by "iFrame" widgets. |
| CVE-2018-15906 | — | — | 8.2% | Mar 21, 2019 | SolarWinds Serv-U FTP Server 15.1.6 allows remote authenticated users to execute arbitrary code by leveraging the Import... |
Check if your code is affected by 2018 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now