2018 CVE Vulnerabilities
17,817 CVEs published in 2018.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2018-19416 | — | — | 1.7% | Nov 21, 2018 | An issue was discovered in sysstat 12.1.1. The remap_struct function in sa_common.c has an out-of-bounds read during a m... |
| CVE-2018-19411 | — | — | 0.9% | Nov 21, 2018 | PRTG Network Monitor before 18.2.40.1683 allows an authenticated user with a read-only account to create another user wi... |
| CVE-2018-19409 | — | — | 7.8% | Nov 21, 2018 | An issue was discovered in Artifex Ghostscript before 9.26. LockSafetyParams is not checked correctly if another device ... |
| CVE-2018-19407 | — | — | 0.5% | Nov 21, 2018 | The vcpu_scan_ioapic function in arch/x86/kvm/x86.c in the Linux kernel through 4.19.2 allows local users to cause a den... |
| CVE-2018-19406 | — | — | 0.4% | Nov 21, 2018 | kvm_pv_send_ipi in arch/x86/kvm/lapic.c in the Linux kernel through 4.19.2 allows local users to cause a denial of servi... |
| CVE-2018-19404 | — | — | 1.6% | Nov 21, 2018 | In YXcms 1.4.7, protected/apps/appmanage/controller/indexController.php allow remote authenticated Administrators to exe... |
| CVE-2018-19396 | — | — | 4.6% | Nov 20, 2018 | ext/standard/var_unserializer.c in PHP 5.x through 7.1.24 allows attackers to cause a denial of service (application cra... |
| CVE-2018-19395 | — | — | 4.3% | Nov 20, 2018 | ext/standard/var.c in PHP 5.x through 7.1.24 on Windows allows attackers to cause a denial of service (NULL pointer dere... |
| CVE-2018-19390 | — | — | 2.2% | Nov 20, 2018 | FoxitReader.exe in Foxit Reader 9.3.0.10826 allows remote attackers to cause a denial of service (Break instruction exce... |
| CVE-2018-19389 | — | — | 2.0% | Nov 20, 2018 | FoxitReader.exe in Foxit Reader 9.3.0.10826 allows remote attackers to cause a denial of service (Break instruction exce... |
| CVE-2018-19388 | — | — | 2.2% | Nov 20, 2018 | FoxitReader.exe in Foxit Reader 9.3.0.10826 allows remote attackers to cause a denial of service (out-of-bounds read, ac... |
| CVE-2018-19387 | — | — | — | Nov 20, 2018 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. ... |
| CVE-2018-19376 | — | — | 0.5% | Nov 20, 2018 | An issue was discovered in GreenCMS v2.3.0603. There is a CSRF vulnerability that allows attackers to delete a log file ... |
| CVE-2018-18865 | — | — | 8.0% | Nov 20, 2018 | The Royal browser extensions TS before 4.3.60728 (Release Date 2018-07-28) and TSX before 3.3.1 (Release Date 2018-09-13... |
| CVE-2018-18864 | — | — | 2.6% | Nov 20, 2018 | Loadbalancer.org Enterprise VA MAX before 8.3.3 has XSS because Apache HTTP Server logs are displayed. |
| CVE-2018-18861 | — | — | 4.5% | Nov 20, 2018 | Buffer overflow in PCMan FTP Server 2.0.7 allows for remote code execution via the APPE command. |
| CVE-2018-18859 | — | — | 1.6% | Nov 20, 2018 | Multiple local privilege escalation vulnerabilities have been identified in the LiquidVPN client through 1.37 for macOS.... |
| CVE-2018-18858 | — | — | 1.6% | Nov 20, 2018 | Multiple local privilege escalation vulnerabilities have been identified in the LiquidVPN client through 1.37 for macOS.... |
| CVE-2018-18857 | — | — | 1.6% | Nov 20, 2018 | Multiple local privilege escalation vulnerabilities have been identified in the LiquidVPN client through 1.37 for macOS.... |
| CVE-2018-18856 | — | — | 1.6% | Nov 20, 2018 | Multiple local privilege escalation vulnerabilities have been identified in the LiquidVPN client through 1.37 for macOS.... |
| CVE-2018-18774 | — | — | 4.8% | Nov 20, 2018 | CentOS-WebPanel.com (aka CWP) CentOS Web Panel through 0.9.8.740 allows XSS via the admin/index.php module parameter. |
| CVE-2018-18773 | — | — | 3.4% | Nov 20, 2018 | CentOS-WebPanel.com (aka CWP) CentOS Web Panel through 0.9.8.740 allows CSRF via admin/index.php?module=rootpwd, as demo... |
| CVE-2018-18772 | — | — | 3.5% | Nov 20, 2018 | CentOS-WebPanel.com (aka CWP) CentOS Web Panel through 0.9.8.740 allows CSRF via admin/index.php?module=send_ssh, as dem... |
| CVE-2018-18716 | — | — | 2.8% | Nov 20, 2018 | Zoho ManageEngine OpManager 12.3 before 123219 has a Self XSS Vulnerability. |
| CVE-2018-18715 | — | — | 2.8% | Nov 20, 2018 | Zoho ManageEngine OpManager 12.3 before 123219 has stored XSS. |
Check if your code is affected by 2018 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now