2018 CVE Vulnerabilities

17,817 CVEs published in 2018.

CVE IDSeverityCVSSDescription
CVE-2018-1666MEDIUM4.3IBM DataPower Gateway 2018.4.1.0, 7.6.0.0 through 7.6.0.11, 7.5.2.0 through 7.5.2.18, 7.5.1.0 through 7.5.1.18, 7.5.0.0 ...
CVE-2018-7839A Cryptographic Issue (CWE-310) vulnerability exists in IIoT Monitor 3.1.38 which could allow information disclosure.
CVE-2018-7817A Use After Free (CWE-416) vulnerability exists in Zelio Soft 2 v5.1 and prior versions which could cause remote code ex...
CVE-2018-7815A Type Confusion (CWE-843) vulnerability exists in Eurotherm by Schneider Electric GUIcon V2.0 (Gold Build 683.0) on c3c...
CVE-2018-7814A Stack-based Buffer Overflow (CWE-121) vulnerability exists in Eurotherm by Schneider Electric GUIcon V2.0 (Gold Build ...
CVE-2018-7813A Type Confusion (CWE-843) vulnerability exists in Eurotherm by Schneider Electric GUIcon V2.0 (Gold Build 683.0) on pcw...
CVE-2018-20763In GPAC 0.7.1 and earlier, gf_text_get_utf8_line in media_tools/text_import.c in libgpac_static.a allows an out-of-bound...
CVE-2018-20762GPAC version 0.7.1 and earlier has a buffer overflow vulnerability in the cat_multiple_files function in applications/mp...
CVE-2018-20761GPAC version 0.7.1 and earlier has a Buffer Overflow vulnerability in the gf_sm_load_init function in scene_manager.c in...
CVE-2018-20760In GPAC 0.7.1 and earlier, gf_text_get_utf8_line in media_tools/text_import.c in libgpac_static.a allows an out-of-bound...
CVE-2018-20246Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was...
CVE-2018-17203Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was...
CVE-2018-3980HIGH7.8An exploitable out-of-bounds write exists in the TIFF-parsing functionality of Canvas Draw version 5.0.0. A specially cr...
CVE-2018-3976HIGH7.8An exploitable out-of-bounds write exists in the CALS Raster file format-parsing functionality of Canvas Draw version 5....
CVE-2018-3973HIGH7.8An exploitable out of bounds write exists in the CAL parsing functionality of Canvas Draw version 5.0.0. A specially cra...
CVE-2018-16890HIGH7.5libcurl versions from 7.36.0 to before 7.64.0 is vulnerable to a heap buffer out-of-bounds read. The function handling i...
CVE-2018-20758MEDIUM5.4MODX Revolution through v2.7.0-pl allows XSS via User Settings such as Description.
CVE-2018-20757MODX Revolution through v2.7.0-pl allows XSS via an extended user field such as Container name or Attribute name.
CVE-2018-20756MODX Revolution through v2.7.0-pl allows XSS via a document resource (such as pagetitle), which is mishandled during an ...
CVE-2018-20755MODX Revolution through v2.7.0-pl allows XSS via the User Photo field.
CVE-2018-3991CRITICAL10An exploitable heap overflow vulnerability exists in the WkbProgramLow function of WibuKey Network server management, ve...
CVE-2018-3990CRITICAL9.3An exploitable pool corruption vulnerability exists in the 0x8200E804 IOCTL handler functionality of WIBU-SYSTEMS WibuKe...
CVE-2018-3989MEDIUM4.3An exploitable kernel memory disclosure vulnerability exists in the 0x8200E804 IOCTL handler functionality of WIBU-SYSTE...
CVE-2018-18334A vulnerability in the Private Browser of Trend Micro Dr. Safety for Android (Consumer) versions below 3.0.1478 could al...
CVE-2018-18333HIGH7.8A DLL hijacking vulnerability in Trend Micro Security 2019 (Consumer) versions below 15.0.0.1163 and below could allow a...

Check if your code is affected by 2018 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now