2018 CVE Vulnerabilities

17,817 CVEs published in 2018.

CVE IDSeverityCVSSDescription
CVE-2018-15509Five9 Agent Desktop Plus 10.0.70 has Incorrect Access Control (issue 2 of 2).
CVE-2018-20806Phamm (aka PHP LDAP Virtual Hosting Manager) 0.6.8 allows XSS via the login page (the /public/main.php action parameter)...
CVE-2018-20106MEDIUM6.5In yast2-printer up to and including version 4.0.2 the SMB printer settings don't escape characters in passwords properl...
CVE-2018-18205Topvision CC8800 CMTS C-E devices allow remote attackers to obtain sensitive information via a direct request for /WebCo...
CVE-2018-17956HIGH7.8In yast2-samba-provision up to and including version 1.0.1 the password for samba shares was provided on the command lin...
CVE-2018-17955LOW2.2In yast2-multipath before version 4.1.1 a static temporary filename allows local attackers to overwrite files on systems...
CVE-2018-17882An Integer overflow vulnerability exists in the batchTransfer function of a smart contract implementation for CryptoBots...
CVE-2018-20182rdesktop versions up to and including v1.8.3 contain a Buffer Overflow over the global variables in the function seamles...
CVE-2018-20181rdesktop versions up to and including v1.8.3 contain an Integer Underflow that leads to a Heap-Based Buffer Overflow in ...
CVE-2018-20180rdesktop versions up to and including v1.8.3 contain an Integer Underflow that leads to a Heap-Based Buffer Overflow in ...
CVE-2018-20179rdesktop versions up to and including v1.8.3 contain an Integer Underflow that leads to a Heap-Based Buffer Overflow in ...
CVE-2018-20178rdesktop versions up to and including v1.8.3 contain an Out-Of-Bounds Read in the function process_demand_active() that ...
CVE-2018-20177CRITICAL9.8rdesktop versions up to and including v1.8.3 contain an Integer Overflow that leads to a Heap-Based Buffer Overflow in t...
CVE-2018-20176rdesktop versions up to and including v1.8.3 contain several Out-Of- Bounds Reads in the file secure.c that result in a ...
CVE-2018-20175rdesktop versions up to and including v1.8.3 contains several Integer Signedness errors that lead to Out-Of-Bounds Reads...
CVE-2018-20174rdesktop versions up to and including v1.8.3 contain an Out-Of-Bounds Read in the function ui_clip_handle_data() that re...
CVE-2018-19394Cobham Satcom Sailor 800 and 900 devices contained persistent XSS, which required administrative access to exploit. The ...
CVE-2018-19393Cobham Satcom Sailor 800 and 900 devices contained a vulnerability that allowed for arbitrary writing of content to the ...
CVE-2018-19392Cobham Satcom Sailor 250 and 500 devices before 1.25 contained an unauthenticated password reset vulnerability. This cou...
CVE-2018-19391Cobham Satcom Sailor 250 and 500 devices before 1.25 contained persistent XSS, which could be exploited by an unauthenti...
CVE-2018-18256An issue was discovered in CapMon Access Manager 5.4.1.1005. A regular user can obtain local administrator privileges if...
CVE-2018-18255An issue was discovered in CapMon Access Manager 5.4.1.1005. The client applications of AccessManagerCoreService.exe com...
CVE-2018-18254An issue was discovered in CapMon Access Manager 5.4.1.1005. An unprivileged user can read the cal_whitelist table in th...
CVE-2018-18253An issue was discovered in CapMon Access Manager 5.4.1.1005. CALRunElevated.exe attempts to enforce access control by ad...
CVE-2018-18252An issue was discovered in CapMon Access Manager 5.4.1.1005. CALRunElevated.exe provides "NT AUTHORITY\SYSTEM" access to...

Check if your code is affected by 2018 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now