2018 CVE Vulnerabilities

17,817 CVEs published in 2018.

CVE IDSeverityCVSSDescription
CVE-2018-18506MEDIUM5.9When proxy auto-detection is enabled, if a web server serves a Proxy Auto-Configuration (PAC) file or if a PAC file is l...
CVE-2018-18505An earlier fix for an Inter-process Communication (IPC) vulnerability, CVE-2011-3079, added authentication to communicat...
CVE-2018-18504A crash and out-of-bounds read can occur when the buffer of a texture client is freed while it is still in use during gr...
CVE-2018-18503When JavaScript is used to create and manipulate an audio buffer, a potentially exploitable crash may occur because of a...
CVE-2018-18502Mozilla developers and community members reported memory safety bugs present in Firefox 64. Some of these bugs showed ev...
CVE-2018-18501Mozilla developers and community members reported memory safety bugs present in Firefox 64 and Firefox ESR 60.4. Some of...
CVE-2018-18500A use-after-free vulnerability can occur while parsing an HTML5 stream in concert with custom HTML elements. This result...
CVE-2018-8800CRITICAL9.8rdesktop versions up to and including v1.8.3 contain a Heap-Based Buffer Overflow in function ui_clip_handle_data() that...
CVE-2018-8799rdesktop versions up to and including v1.8.3 contain an Out-Of-Bounds Read in function process_secondary_order() that re...
CVE-2018-8798rdesktop versions up to and including v1.8.3 contain an Out-Of-Bounds Read in function rdpsnd_process_ping() that result...
CVE-2018-8797CRITICAL9.8rdesktop versions up to and including v1.8.3 contain a Heap-Based Buffer Overflow in function process_plane() that resul...
CVE-2018-8796rdesktop versions up to and including v1.8.3 contain an Out-Of-Bounds Read in function process_bitmap_updates() that res...
CVE-2018-8795CRITICAL9.8rdesktop versions up to and including v1.8.3 contain an Integer Overflow that leads to a Heap-Based Buffer Overflow in f...
CVE-2018-8794CRITICAL9.8rdesktop versions up to and including v1.8.3 contain an Integer Overflow that leads to an Out-Of-Bounds Write in functio...
CVE-2018-8793CRITICAL9.8rdesktop versions up to and including v1.8.3 contain a Heap-Based Buffer Overflow in function cssp_read_tsrequest() that...
CVE-2018-8792rdesktop versions up to and including v1.8.3 contain an Out-Of-Bounds Read in function cssp_read_tsrequest() that result...
CVE-2018-8791rdesktop versions up to and including v1.8.3 contain an Out-Of-Bounds Read in function rdpdr_process() that results in a...
CVE-2018-20252In WinRAR versions prior to and including 5.60, there is an out-of-bounds write vulnerability during parsing of crafted ...
CVE-2018-20251In WinRAR versions prior to and including 5.61, there is path traversal vulnerability when crafting the filename field o...
CVE-2018-20250HIGH7.8In WinRAR versions prior to and including 5.61, There is path traversal vulnerability when crafting the filename field o...
CVE-2018-4056CRITICAL9.8An exploitable SQL injection vulnerability exists in the administrator web portal function of coTURN prior to version 4....
CVE-2018-19029LCDS Laquis SCADA prior to version 4.1.0.4150 allows an attacker using a specially crafted project file to supply a poin...
CVE-2018-19002LCDS Laquis SCADA prior to version 4.1.0.4150 allows improper control of generation of code when opening a specially cra...
CVE-2018-19000LCDS Laquis SCADA prior to version 4.1.0.4150 allows an authentication bypass, which may allow an attacker access to sen...
CVE-2018-18998LCDS Laquis SCADA prior to version 4.1.0.4150 uses hard coded credentials, which may allow an attacker unauthorized acce...

Check if your code is affected by 2018 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now