2018 CVE Vulnerabilities

17,817 CVEs published in 2018.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2018-7988There is a Factory Reset Protection (FRP) bypass vulnerability on several smartphones. The system does not sufficiently ...
CVE-2018-7977There is an information leakage vulnerability on several Huawei products. Due to insufficient communication protection f...
CVE-2018-7961There is a smart SMS verification code vulnerability in some Huawei smart phones. An attacker should trick a user to acc...
CVE-2018-7960There is a SRTP icon display vulnerability in Huawei eSpace product. An unauthenticated, remote attacker launches man-in...
CVE-2018-7959There is a short key vulnerability in Huawei eSpace product. An unauthenticated, remote attacker launches man-in-the-mid...
CVE-2018-7958There is an anonymous TLS cipher suites supported vulnerability in Huawei eSpace product. An unauthenticated, remote att...
CVE-2018-7946There is an information leak vulnerability in some Huawei smartphones. An attacker may do some specific configuration in...
CVE-2018-13418System command injection in ajaxdata.php in TerraMaster TOS 3.1.03 allows attackers to execute system commands via the "...
CVE-2018-13361User enumeration in usertable.php in TerraMaster TOS version 3.1.03 allows attackers to list all system users via the "m...
CVE-2018-13360Cross-site scripting in Text Editor in TerraMaster TOS version 3.1.03 allows attackers to execute JavaScript via the "fi...
CVE-2018-13359Cross-site scripting in usertable.php in TerraMaster TOS version 3.1.03 allows attackers to execute JavaScript via the "...
CVE-2018-13358System command injection in ajaxdata.php in TerraMaster TOS version 3.1.03 allows attackers to execute system commands v...
CVE-2018-13357Cross-site scripting in Control Panel in TerraMaster TOS version 3.1.03 allows attackers to execute JavaScript when view...
CVE-2018-13356Incorrect access control on ajaxdata.php in TerraMaster TOS version 3.1.03 allows attackers to elevate user permissions.
CVE-2018-13355Incorrect access controls in ajaxdata.php in TerraMaster TOS version 3.1.03 allow attackers to create user groups withou...
CVE-2018-13354System command injection in logtable.php in TerraMaster TOS version 3.1.03 allows attackers to execute system commands v...
CVE-2018-13353System command injection in ajaxdata.php in TerraMaster TOS version 3.1.03 allows attackers to execute commands via the ...
CVE-2018-13352Session Exposure in the web application for TerraMaster TOS version 3.1.03 allows attackers to view active session token...
CVE-2018-13351Cross-site scripting in Control Panel in TerraMaster TOS version 3.1.03 allows attackers to execute JavaScript via the e...
CVE-2018-13350SQL injection in logtable.php in TerraMaster TOS version 3.1.03 allows attackers to execute SQL queries via the "Event" ...
CVE-2018-13349Cross-site scripting in the web application taskbar in TerraMaster TOS version 3.1.03 allows attackers to execute JavaSc...
CVE-2018-13338System command injection in ajaxdata.php in TerraMaster TOS version 3.1.03 allows attackers to execute system commands v...
CVE-2018-13336System command injection in ajaxdata.php in TerraMaster TOS version 3.1.03 allows attackers to execute system commands v...
CVE-2018-13335Cross-site scripting in Control Panel in TerraMaster TOS version 3.1.03 allows attackers to execute JavaScript when view...
CVE-2018-13333Cross-site scripting in File Manager in TerraMaster TOS version 3.1.03 allows attackers to execute JavaScript in the per...

Check if your code is affected by 2018 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now