2018 CVE Vulnerabilities
17,817 CVEs published in 2018.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2018-7988 | — | — | 0.2% | Nov 27, 2018 | There is a Factory Reset Protection (FRP) bypass vulnerability on several smartphones. The system does not sufficiently ... |
| CVE-2018-7977 | — | — | 1.0% | Nov 27, 2018 | There is an information leakage vulnerability on several Huawei products. Due to insufficient communication protection f... |
| CVE-2018-7961 | — | — | 0.9% | Nov 27, 2018 | There is a smart SMS verification code vulnerability in some Huawei smart phones. An attacker should trick a user to acc... |
| CVE-2018-7960 | — | — | 0.8% | Nov 27, 2018 | There is a SRTP icon display vulnerability in Huawei eSpace product. An unauthenticated, remote attacker launches man-in... |
| CVE-2018-7959 | — | — | 0.8% | Nov 27, 2018 | There is a short key vulnerability in Huawei eSpace product. An unauthenticated, remote attacker launches man-in-the-mid... |
| CVE-2018-7958 | — | — | 1.1% | Nov 27, 2018 | There is an anonymous TLS cipher suites supported vulnerability in Huawei eSpace product. An unauthenticated, remote att... |
| CVE-2018-7946 | — | — | 0.3% | Nov 27, 2018 | There is an information leak vulnerability in some Huawei smartphones. An attacker may do some specific configuration in... |
| CVE-2018-13418 | — | — | 5.2% | Nov 27, 2018 | System command injection in ajaxdata.php in TerraMaster TOS 3.1.03 allows attackers to execute system commands via the "... |
| CVE-2018-13361 | — | — | 16.9% | Nov 27, 2018 | User enumeration in usertable.php in TerraMaster TOS version 3.1.03 allows attackers to list all system users via the "m... |
| CVE-2018-13360 | — | — | 1.3% | Nov 27, 2018 | Cross-site scripting in Text Editor in TerraMaster TOS version 3.1.03 allows attackers to execute JavaScript via the "fi... |
| CVE-2018-13359 | — | — | 19.9% | Nov 27, 2018 | Cross-site scripting in usertable.php in TerraMaster TOS version 3.1.03 allows attackers to execute JavaScript via the "... |
| CVE-2018-13358 | — | — | 24.9% | Nov 27, 2018 | System command injection in ajaxdata.php in TerraMaster TOS version 3.1.03 allows attackers to execute system commands v... |
| CVE-2018-13357 | — | — | 0.9% | Nov 27, 2018 | Cross-site scripting in Control Panel in TerraMaster TOS version 3.1.03 allows attackers to execute JavaScript when view... |
| CVE-2018-13356 | — | — | 2.0% | Nov 27, 2018 | Incorrect access control on ajaxdata.php in TerraMaster TOS version 3.1.03 allows attackers to elevate user permissions. |
| CVE-2018-13355 | — | — | 1.1% | Nov 27, 2018 | Incorrect access controls in ajaxdata.php in TerraMaster TOS version 3.1.03 allow attackers to create user groups withou... |
| CVE-2018-13354 | — | — | 22.9% | Nov 27, 2018 | System command injection in logtable.php in TerraMaster TOS version 3.1.03 allows attackers to execute system commands v... |
| CVE-2018-13353 | — | — | 5.9% | Nov 27, 2018 | System command injection in ajaxdata.php in TerraMaster TOS version 3.1.03 allows attackers to execute commands via the ... |
| CVE-2018-13352 | — | — | 1.9% | Nov 27, 2018 | Session Exposure in the web application for TerraMaster TOS version 3.1.03 allows attackers to view active session token... |
| CVE-2018-13351 | — | — | 0.9% | Nov 27, 2018 | Cross-site scripting in Control Panel in TerraMaster TOS version 3.1.03 allows attackers to execute JavaScript via the e... |
| CVE-2018-13350 | — | — | 16.7% | Nov 27, 2018 | SQL injection in logtable.php in TerraMaster TOS version 3.1.03 allows attackers to execute SQL queries via the "Event" ... |
| CVE-2018-13349 | — | — | 1.1% | Nov 27, 2018 | Cross-site scripting in the web application taskbar in TerraMaster TOS version 3.1.03 allows attackers to execute JavaSc... |
| CVE-2018-13338 | — | — | 10.2% | Nov 27, 2018 | System command injection in ajaxdata.php in TerraMaster TOS version 3.1.03 allows attackers to execute system commands v... |
| CVE-2018-13336 | — | — | 9.1% | Nov 27, 2018 | System command injection in ajaxdata.php in TerraMaster TOS version 3.1.03 allows attackers to execute system commands v... |
| CVE-2018-13335 | — | — | 0.9% | Nov 27, 2018 | Cross-site scripting in Control Panel in TerraMaster TOS version 3.1.03 allows attackers to execute JavaScript when view... |
| CVE-2018-13333 | — | — | 1.1% | Nov 27, 2018 | Cross-site scripting in File Manager in TerraMaster TOS version 3.1.03 allows attackers to execute JavaScript in the per... |
Check if your code is affected by 2018 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now