2018 CVE Vulnerabilities
17,817 CVEs published in 2018.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2018-14934 | — | — | 0.5% | Nov 15, 2018 | The Bluetooth subsystem on Polycom Trio devices with software before 5.5.4 has Incorrect Access Control. An attacker can... |
| CVE-2018-8529 | — | — | 13.5% | Nov 15, 2018 | A remote code execution vulnerability exists when Team Foundation Server (TFS) does not enable basic authorization on th... |
| CVE-2018-16163 | — | — | 0.8% | Nov 15, 2018 | OpenDolphin 2.7.0 and earlier allows authenticated attackers to bypass authentication to create and/or delete other user... |
| CVE-2018-16162 | — | — | 1.0% | Nov 15, 2018 | OpenDolphin 2.7.0 and earlier allows authenticated attackers to obtain other users credentials such as a user ID and/or ... |
| CVE-2018-16161 | — | — | 1.3% | Nov 15, 2018 | OpenDolphin 2.7.0 and earlier allows authenticated users to gain administrative privileges and perform unintended operat... |
| CVE-2018-16160 | — | — | 0.3% | Nov 15, 2018 | SecureCore Standard Edition Version 2.x allows an attacker to bypass the product 's authentication to log in to a Window... |
| CVE-2018-12543 | — | — | 36.0% | Nov 15, 2018 | In Eclipse Mosquitto versions 1.5 to 1.5.2 inclusive, if a message is published to Mosquitto that has a topic starting w... |
| CVE-2018-0701 | — | — | 0.6% | Nov 15, 2018 | BlueStacks App Player (BlueStacks App Player for Windows 3.0.0 to 4.31.55, BlueStacks App Player for macOS 2.0.0 and lat... |
| CVE-2018-0700 | — | — | 1.1% | Nov 15, 2018 | YukiWiki 2.1.3 and earlier does not process a particular request properly that may allow consumption of large amounts of... |
| CVE-2018-0699 | — | — | 0.8% | Nov 15, 2018 | Cross-site scripting vulnerability in YukiWiki 2.1.3 and earlier allows remote attackers to inject arbitrary web script ... |
| CVE-2018-0697 | — | — | 0.8% | Nov 15, 2018 | Cross-site scripting vulnerability in Metabase version 0.29.3 and earlier allows remote attackers to inject arbitrary we... |
| CVE-2018-0695 | — | — | 0.8% | Nov 15, 2018 | Cross-site scripting vulnerability in User-friendly SVN (USVN) Version 1.0.7 and earlier allows remote attackers to inje... |
| CVE-2018-0694 | — | — | 2.4% | Nov 15, 2018 | FileZen V3.0.0 to V4.2.1 allows remote attackers to execute arbitrary OS commands via unspecified vectors. |
| CVE-2018-0693 | — | — | 1.9% | Nov 15, 2018 | Directory traversal vulnerability in FileZen V3.0.0 to V4.2.1 allows remote attackers to upload an arbitrary file in the... |
| CVE-2018-0692 | — | — | 0.9% | Nov 15, 2018 | Untrusted search path vulnerability in Baidu Browser Version 43.23.1000.500 and earlier allows an attacker to gain privi... |
| CVE-2018-0691 | — | — | 0.7% | Nov 15, 2018 | Multiple +Message Apps (Softbank +Message App for Android prior to version 10.1.7, Softbank +Message App for iOS prior t... |
| CVE-2018-0690 | — | — | 1.5% | Nov 15, 2018 | An unvalidated software update vulnerability in Music Center for PC version 1.0.02 and earlier could allow a man-in-the-... |
| CVE-2018-0687 | — | — | 1.0% | Nov 15, 2018 | Cross-site scripting vulnerability in Denbun by NEOJAPAN Inc. (Denbun POP version V3.3P R4.0 and earlier, Denbun IMAP ve... |
| CVE-2018-0686 | — | — | 1.5% | Nov 15, 2018 | Denbun by NEOJAPAN Inc. (Denbun POP version V3.3P R4.0 and earlier, Denbun IMAP version V3.3I R4.0 and earlier) allows r... |
| CVE-2018-0685 | — | — | 1.2% | Nov 15, 2018 | SQL injection vulnerability in the Denbun POP version V3.3P R4.0 and earlier allows remote authenticated attackers to ex... |
| CVE-2018-0684 | — | — | 3.6% | Nov 15, 2018 | Buffer overflow in Denbun by NEOJAPAN Inc. (Denbun POP version V3.3P R3.0 and earlier, Denbun IMAP version V3.3I R3.0 an... |
| CVE-2018-0683 | — | — | 3.6% | Nov 15, 2018 | Buffer overflow in Denbun by NEOJAPAN Inc. (Denbun POP version V3.3P R4.0 and earlier, Denbun IMAP version V3.3I R4.0 an... |
| CVE-2018-0682 | — | — | 1.8% | Nov 15, 2018 | Denbun by NEOJAPAN Inc. (Denbun POP version V3.3P R4.0 and earlier, Denbun IMAP version V3.3I R4.0 and earlier) does not... |
| CVE-2018-0681 | — | — | 1.7% | Nov 15, 2018 | Denbun by NEOJAPAN Inc. (Denbun POP version V3.3P R4.0 and earlier, Denbun IMAP version V3.3I R4.0 and earlier) uses har... |
| CVE-2018-0680 | — | — | 1.7% | Nov 15, 2018 | Denbun by NEOJAPAN Inc. (Denbun POP version V3.3P R4.0 and earlier, Denbun IMAP version V3.3I R4.0 and earlier) uses har... |
Check if your code is affected by 2018 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now