2018 CVE Vulnerabilities
17,817 CVEs published in 2018.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2018-0679 | — | — | 0.5% | Nov 15, 2018 | Cross-site scripting vulnerability in multiple FXC Inc. network devices (Managed Ethernet switch FXC5210/5218/5224 firmw... |
| CVE-2018-0673 | — | — | 1.4% | Nov 15, 2018 | Directory traversal vulnerability in Cybozu Garoon 3.5.0 to 4.6.3 allows authenticated attackers to read arbitrary files... |
| CVE-2018-12480 | — | — | 0.7% | Nov 15, 2018 | Mitigates an XSS issue in NetIQ Access Manager versions prior to 4.4 SP3. |
| CVE-2018-19291 | — | — | 0.7% | Nov 15, 2018 | An issue was discovered in DiliCMS 2.4.0. There is a CSRF vulnerability that can delete a user or group via an admin/ind... |
| CVE-2018-19288 | — | — | 2.4% | Nov 15, 2018 | Zoho ManageEngine OpManager 12.3 before Build 123223 has XSS via the updateWidget API. |
| CVE-2018-19287 | — | — | 8.1% | Nov 15, 2018 | XSS in the Ninja Forms plugin before 3.3.18 for WordPress allows Remote Attackers to execute JavaScript via the includes... |
| CVE-2018-19281 | — | — | 1.8% | Nov 14, 2018 | Centreon 3.4.x (fixed in Centreon 18.10.0 and Centreon web 2.8.27) allows SNMP trap SQL Injection. |
| CVE-2018-19280 | — | — | 0.9% | Nov 14, 2018 | Centreon 3.4.x (fixed in Centreon 18.10.0) has XSS via the resource name or macro expression of a poller macro. |
| CVE-2018-19279 | — | — | 0.2% | Nov 14, 2018 | PRIMX ZoneCentral before 6.1.2236 on Windows sometimes leaks the plaintext of NTFS files. On non-SSD devices, this is li... |
| CVE-2018-19278 | — | — | 3.6% | Nov 14, 2018 | Buffer overflow in DNS SRV and NAPTR lookups in Digium Asterisk 15.x before 15.6.2 and 16.x before 16.0.1 allows remote ... |
| CVE-2018-17960 | — | — | 2.0% | Nov 14, 2018 | CKEditor 4.x before 4.11.0 allows user-assisted XSS involving a source-mode paste. |
| CVE-2018-5495 | — | — | 1.6% | Nov 14, 2018 | All StorageGRID Webscale versions are susceptible to a vulnerability which could permit an unauthenticated attacker to c... |
| CVE-2018-9580 | — | — | 0.5% | Nov 14, 2018 | A Elevation of privilege vulnerability in the HTC bootloader. Product: Android. Versions: Android kernel. Android ID: A-... |
| CVE-2018-9545 | — | — | 0.2% | Nov 14, 2018 | In BTA_HdRegisterApp of bta_hd_api.cc, there is a possible out-of-bound write due to a missing bounds check. This could ... |
| CVE-2018-9544 | — | — | 0.2% | Nov 14, 2018 | In register_app of btif_hd.cc, there is a possible out-of-bounds read due to a missing bounds check. This could lead to ... |
| CVE-2018-9543 | — | — | 0.2% | Nov 14, 2018 | In trim_device of f2fs_format_utils.c, it is possible that the data partition is not wiped during a factory reset. This ... |
| CVE-2018-9542 | — | — | 1.1% | Nov 14, 2018 | In avrc_pars_vendor_rsp of avrc_pars_ct.cc, there is a possible out of bounds read due to a missing bounds check. This c... |
| CVE-2018-9541 | — | — | 1.1% | Nov 14, 2018 | In avrc_pars_vendor_rsp of avcr_pars_ct.cc, there is a possible out-of-bounds read due to a missing bounds check. This c... |
| CVE-2018-9540 | — | — | 1.1% | Nov 14, 2018 | In avrc_ctrl_pars_vendor_rsp of avrc_pars_ct.c, there is a possible out of bounds read due to a missing bounds check. Th... |
| CVE-2018-9539 | — | — | 0.4% | Nov 14, 2018 | In the ClearKey CAS descrambler, there is a possible use after free due to a race condition. This could lead to local es... |
| CVE-2018-9537 | — | — | 1.5% | Nov 14, 2018 | In CAacDecoder_DecodeFrame of aacdecode.cpp, there is a possible out-of-bounds write due to a missing bounds check. This... |
| CVE-2018-9536 | — | — | 1.4% | Nov 14, 2018 | In numerous functions of libFDK, there are possible out of bounds writes due to incorrect bounds checks. This could lead... |
| CVE-2018-9535 | — | — | 0.7% | Nov 14, 2018 | In ixheaacd_reset_acelp_data_fix of ixheaacd_lpc.c there is a possible out of bounds write due to a missing bounds check... |
| CVE-2018-9534 | — | — | 0.7% | Nov 14, 2018 | In ixheaacd_mps_getstridemap of ixheaacd_mps_parse.c there is a possible out of bounds write due to a missing bounds che... |
| CVE-2018-9533 | — | — | 0.7% | Nov 14, 2018 | In ixheaacd_dec_data_init of ixheaacd_create.c there is a possible out of write read due to a missing bounds check. This... |
Check if your code is affected by 2018 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now