2018 CVE Vulnerabilities

17,817 CVEs published in 2018.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2018-8606A cross site scripting vulnerability exists when Microsoft Dynamics 365 (on-premises) version 8 does not properly saniti...
CVE-2018-8605A cross site scripting vulnerability exists when Microsoft Dynamics 365 (on-premises) version 8 does not properly saniti...
CVE-2018-8602A Cross-site Scripting (XSS) vulnerability exists when Team Foundation Server does not properly sanitize user provided i...
CVE-2018-8600A Cross-site Scripting (XSS) vulnerability exists when Azure App Services on Azure Stack does not properly sanitize user...
CVE-2018-8592An elevation of privilege vulnerability exists in Windows 10 version 1809 when installed from physical media (USB, DVD, ...
CVE-2018-8588A remote code execution vulnerability exists in the way that the Chakra scripting engine handles objects in memory in Mi...
CVE-2018-8584An elevation of privilege vulnerability exists when Windows improperly handles calls to Advanced Local Procedure Call (A...
CVE-2018-8582A remote code execution vulnerability exists in the way that Microsoft Outlook parses specially modified rule export fil...
CVE-2018-8579An information disclosure vulnerability exists when attaching files to Outlook messages, aka "Microsoft Outlook Informat...
CVE-2018-8578An information disclosure vulnerability exists when Microsoft SharePoint Server improperly discloses its folder structur...
CVE-2018-8577A remote code execution vulnerability exists in Microsoft Excel software when the software fails to properly handle obje...
CVE-2018-8576A remote code execution vulnerability exists in Microsoft Outlook software when it fails to properly handle objects in m...
CVE-2018-8575A remote code execution vulnerability exists in Microsoft Project software when it fails to properly handle objects in m...
CVE-2018-8574A remote code execution vulnerability exists in Microsoft Excel software when the software fails to properly handle obje...
CVE-2018-8573A remote code execution vulnerability exists in Microsoft Word software when it fails to properly handle objects in memo...
CVE-2018-8572An elevation of privilege vulnerability exists when Microsoft SharePoint Server does not properly sanitize a specially c...
CVE-2018-8570A remote code execution vulnerability exists when Internet Explorer improperly accesses objects in memory, aka "Internet...
CVE-2018-8567An elevation of privilege vulnerability exists when Microsoft Edge does not properly enforce cross-domain policies, whic...
CVE-2018-8566A security feature bypass vulnerability exists when Windows improperly suspends BitLocker Device Encryption, aka "BitLoc...
CVE-2018-8565An information disclosure vulnerability exists when the win32k component improperly provides kernel information, aka "Wi...
CVE-2018-8564A spoofing vulnerability exists when Microsoft Edge improperly handles specific HTML content, aka "Microsoft Edge Spoofi...
CVE-2018-8563An information disclosure vulnerability exists when DirectX improperly handles objects in memory, aka "DirectX Informati...
CVE-2018-8562An elevation of privilege vulnerability exists in Windows when the Win32k component fails to properly handle objects in ...
CVE-2018-8561An elevation of privilege vulnerability exists when DirectX improperly handles objects in memory, aka "DirectX Elevation...
CVE-2018-8558An information disclosure vulnerability exists when Microsoft Outlook fails to respect "Default link type" settings conf...

Check if your code is affected by 2018 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now