2018 CVE Vulnerabilities
17,817 CVEs published in 2018.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2018-1666 | MEDIUM | 4.3 | 0.8% | Feb 7, 2019 | IBM DataPower Gateway 2018.4.1.0, 7.6.0.0 through 7.6.0.11, 7.5.2.0 through 7.5.2.18, 7.5.1.0 through 7.5.1.18, 7.5.0.0 ... |
| CVE-2018-7839 | — | — | 0.3% | Feb 6, 2019 | A Cryptographic Issue (CWE-310) vulnerability exists in IIoT Monitor 3.1.38 which could allow information disclosure. |
| CVE-2018-7817 | — | — | 3.0% | Feb 6, 2019 | A Use After Free (CWE-416) vulnerability exists in Zelio Soft 2 v5.1 and prior versions which could cause remote code ex... |
| CVE-2018-7815 | — | — | 1.1% | Feb 6, 2019 | A Type Confusion (CWE-843) vulnerability exists in Eurotherm by Schneider Electric GUIcon V2.0 (Gold Build 683.0) on c3c... |
| CVE-2018-7814 | — | — | 1.2% | Feb 6, 2019 | A Stack-based Buffer Overflow (CWE-121) vulnerability exists in Eurotherm by Schneider Electric GUIcon V2.0 (Gold Build ... |
| CVE-2018-7813 | — | — | 1.1% | Feb 6, 2019 | A Type Confusion (CWE-843) vulnerability exists in Eurotherm by Schneider Electric GUIcon V2.0 (Gold Build 683.0) on pcw... |
| CVE-2018-20763 | — | — | 1.4% | Feb 6, 2019 | In GPAC 0.7.1 and earlier, gf_text_get_utf8_line in media_tools/text_import.c in libgpac_static.a allows an out-of-bound... |
| CVE-2018-20762 | — | — | 1.5% | Feb 6, 2019 | GPAC version 0.7.1 and earlier has a buffer overflow vulnerability in the cat_multiple_files function in applications/mp... |
| CVE-2018-20761 | — | — | 1.5% | Feb 6, 2019 | GPAC version 0.7.1 and earlier has a Buffer Overflow vulnerability in the gf_sm_load_init function in scene_manager.c in... |
| CVE-2018-20760 | — | — | 1.4% | Feb 6, 2019 | In GPAC 0.7.1 and earlier, gf_text_get_utf8_line in media_tools/text_import.c in libgpac_static.a allows an out-of-bound... |
| CVE-2018-20246 | — | — | — | Feb 6, 2019 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was... |
| CVE-2018-17203 | — | — | — | Feb 6, 2019 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was... |
| CVE-2018-3980 | HIGH | 7.8 | 1.5% | Feb 6, 2019 | An exploitable out-of-bounds write exists in the TIFF-parsing functionality of Canvas Draw version 5.0.0. A specially cr... |
| CVE-2018-3976 | HIGH | 7.8 | 1.8% | Feb 6, 2019 | An exploitable out-of-bounds write exists in the CALS Raster file format-parsing functionality of Canvas Draw version 5.... |
| CVE-2018-3973 | HIGH | 7.8 | 1.9% | Feb 6, 2019 | An exploitable out of bounds write exists in the CAL parsing functionality of Canvas Draw version 5.0.0. A specially cra... |
| CVE-2018-16890 | HIGH | 7.5 | 5.4% | Feb 6, 2019 | libcurl versions from 7.36.0 to before 7.64.0 is vulnerable to a heap buffer out-of-bounds read. The function handling i... |
| CVE-2018-20758 | MEDIUM | 5.4 | 0.6% | Feb 6, 2019 | MODX Revolution through v2.7.0-pl allows XSS via User Settings such as Description. |
| CVE-2018-20757 | — | — | 0.9% | Feb 6, 2019 | MODX Revolution through v2.7.0-pl allows XSS via an extended user field such as Container name or Attribute name. |
| CVE-2018-20756 | — | — | 0.9% | Feb 6, 2019 | MODX Revolution through v2.7.0-pl allows XSS via a document resource (such as pagetitle), which is mishandled during an ... |
| CVE-2018-20755 | — | — | 0.9% | Feb 6, 2019 | MODX Revolution through v2.7.0-pl allows XSS via the User Photo field. |
| CVE-2018-3991 | CRITICAL | 10 | 34.3% | Feb 5, 2019 | An exploitable heap overflow vulnerability exists in the WkbProgramLow function of WibuKey Network server management, ve... |
| CVE-2018-3990 | CRITICAL | 9.3 | 0.6% | Feb 5, 2019 | An exploitable pool corruption vulnerability exists in the 0x8200E804 IOCTL handler functionality of WIBU-SYSTEMS WibuKe... |
| CVE-2018-3989 | MEDIUM | 4.3 | 0.6% | Feb 5, 2019 | An exploitable kernel memory disclosure vulnerability exists in the 0x8200E804 IOCTL handler functionality of WIBU-SYSTE... |
| CVE-2018-18334 | — | — | 2.7% | Feb 5, 2019 | A vulnerability in the Private Browser of Trend Micro Dr. Safety for Android (Consumer) versions below 3.0.1478 could al... |
| CVE-2018-18333 | HIGH | 7.8 | 1.8% | Feb 5, 2019 | A DLL hijacking vulnerability in Trend Micro Security 2019 (Consumer) versions below 15.0.0.1163 and below could allow a... |
Check if your code is affected by 2018 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now