2018 CVE Vulnerabilities
17,817 CVEs published in 2018.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2018-11888 | — | — | 0.2% | Feb 11, 2019 | Unauthorized access may be allowed by the SCP11 Crypto Services TA will processing commands from other TA in Snapdragon ... |
| CVE-2018-11855 | — | — | 0.2% | Feb 11, 2019 | If an end user makes use of SCP11 sample OCE code without modification it could lead to a buffer overflow when transmitt... |
| CVE-2018-11847 | — | — | 0.2% | Feb 11, 2019 | Malicious TA can tag QSEE kernel memory and map to EL0, there by corrupting the physical memory as well it can be used t... |
| CVE-2018-20587 | — | — | 0.3% | Feb 11, 2019 | Bitcoin Core 0.12.0 through 0.17.1 and Bitcoin Knots 0.12.0 through 0.17.x before 0.17.1.knots20181229 have Incorrect Ac... |
| CVE-2018-20780 | — | — | 0.8% | Feb 11, 2019 | Traq 3.7.1 allows admin/users/new CSRF to create an admin account (aka group_id=1). |
| CVE-2018-20779 | — | — | 2.0% | Feb 11, 2019 | Traq 3.7.1 allows SQL Injection via a tickets?search= URI. |
| CVE-2018-20778 | — | — | 0.8% | Feb 11, 2019 | admin/?/plugin/file_manager in Frog CMS 0.9.5 allows XSS by creating a new file containing a crafted attribute of an IMG... |
| CVE-2018-20777 | — | — | 0.6% | Feb 11, 2019 | Frog CMS 0.9.5 has XSS via the admin/?/snippet/edit/1 Body field. |
| CVE-2018-20776 | — | — | 1.5% | Feb 11, 2019 | Frog CMS 0.9.5 provides a directory listing for a /public request. |
| CVE-2018-20775 | — | — | 2.1% | Feb 11, 2019 | admin/?/plugin/file_manager in Frog CMS 0.9.5 allows PHP code execution by creating a new .php file containing PHP code,... |
| CVE-2018-20774 | — | — | 0.6% | Feb 11, 2019 | Frog CMS 0.9.5 has XSS via the admin/?/layout/edit/1 Body field. |
| CVE-2018-20773 | — | — | 2.1% | Feb 11, 2019 | Frog CMS 0.9.5 allows PHP code execution by visiting admin/?/page/edit/1 and inserting additional <?php lines. |
| CVE-2018-20772 | — | — | 2.1% | Feb 11, 2019 | Frog CMS 0.9.5 allows PHP code execution via <?php to the admin/?/layout/edit/1 URI. |
| CVE-2018-20771 | — | — | 3.1% | Feb 10, 2019 | An issue was discovered on Xerox WorkCentre 3655, 3655i, 58XX, 58XXi, 59XX, 59XXi, 6655, 6655i, 72XX, 72XXi, 78XX, 78XXi... |
| CVE-2018-20770 | — | — | 1.1% | Feb 10, 2019 | An issue was discovered on Xerox WorkCentre 3655, 3655i, 58XX, 58XXi, 59XX, 59XXi, 6655, 6655i, 72XX, 72XXi, 78XX, 78XXi... |
| CVE-2018-20769 | — | — | 1.4% | Feb 10, 2019 | An issue was discovered on Xerox WorkCentre 3655, 3655i, 58XX, 58XXi, 59XX, 59XXi, 6655, 6655i, 72XX, 72XXi, 78XX, 78XXi... |
| CVE-2018-20768 | — | — | 1.2% | Feb 10, 2019 | An issue was discovered on Xerox WorkCentre 3655, 3655i, 58XX, 58XXi, 59XX, 59XXi, 6655, 6655i, 72XX, 72XXi, 78XX, 78XXi... |
| CVE-2018-20767 | — | — | 2.2% | Feb 10, 2019 | An issue was discovered on Xerox WorkCentre 3655, 3655i, 58XX, 58XXi, 59XX, 59XXi, 6655, 6655i, 72XX, 72XXi, 78XX, 78XXi... |
| CVE-2018-13792 | CRITICAL | 9.8 | 1.0% | Feb 10, 2019 | Multiple SQL injection vulnerabilities in the monitoring feature in the HTTP API in ABBYY FlexiCapture before 12 Release... |
| CVE-2018-9190 | — | — | 0.4% | Feb 8, 2019 | A null pointer dereference vulnerability in Fortinet FortiClientWindows 6.0.2 and earlier allows attacker to cause a den... |
| CVE-2018-1352 | — | — | 1.2% | Feb 8, 2019 | A format string vulnerability in Fortinet FortiOS 5.6.0 allows attacker to execute unauthorized code or commands via the... |
| CVE-2018-20764 | — | — | 1.2% | Feb 8, 2019 | A buffer overflow exists in HelpSystems tcpcrypt on Linux, used for BoKS encrypted telnet through BoKS version 6.7.1. Si... |
| CVE-2018-18364 | — | — | 0.9% | Feb 8, 2019 | Symantec Ghost Solution Suite (GSS) versions prior to 3.3 RU1 may be susceptible to a DLL hijacking vulnerability, which... |
| CVE-2018-1340 | — | — | 2.1% | Feb 7, 2019 | Prior to 1.0.0, Apache Guacamole used a cookie for client-side storage of the user's session token. This cookie lacked t... |
| CVE-2018-1296 | — | — | 3.3% | Feb 7, 2019 | In Apache Hadoop 3.0.0-alpha1 to 3.0.0, 2.9.0, 2.8.0 to 2.8.3, and 2.5.0 to 2.7.5, HDFS exposes extended attribute key/v... |
Check if your code is affected by 2018 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now