2018 CVE Vulnerabilities
17,817 CVEs published in 2018.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2018-8557 | — | — | 14.2% | Nov 14, 2018 | A remote code execution vulnerability exists in the way that the Chakra scripting engine handles objects in memory in Mi... |
| CVE-2018-8556 | — | — | 14.2% | Nov 14, 2018 | A remote code execution vulnerability exists in the way that the Chakra scripting engine handles objects in memory in Mi... |
| CVE-2018-8555 | — | — | 14.2% | Nov 14, 2018 | A remote code execution vulnerability exists in the way that the Chakra scripting engine handles objects in memory in Mi... |
| CVE-2018-8554 | — | — | 1.2% | Nov 14, 2018 | An elevation of privilege vulnerability exists when DirectX improperly handles objects in memory, aka "DirectX Elevation... |
| CVE-2018-8553 | — | — | 19.1% | Nov 14, 2018 | A remote code execution vulnerability exists in the way that Microsoft Graphics Components handle objects in memory, aka... |
| CVE-2018-8552 | — | — | 51.0% | Nov 14, 2018 | An information disclosure vulnerability exists when VBScript improperly discloses the contents of its memory, which coul... |
| CVE-2018-8551 | — | — | 14.2% | Nov 14, 2018 | A remote code execution vulnerability exists in the way that the Chakra scripting engine handles objects in memory in Mi... |
| CVE-2018-8550 | — | — | 3.3% | Nov 14, 2018 | An elevation of privilege exists in Windows COM Aggregate Marshaler, aka "Windows COM Elevation of Privilege Vulnerabili... |
| CVE-2018-8549 | — | — | 1.2% | Nov 14, 2018 | A security feature bypass exists when Windows incorrectly validates kernel driver signatures, aka "Windows Security Feat... |
| CVE-2018-8547 | — | — | 1.6% | Nov 14, 2018 | A cross-site-scripting (XSS) vulnerability exists when an open source customization for Microsoft Active Directory Feder... |
| CVE-2018-8546 | — | — | 5.5% | Nov 14, 2018 | A denial of service vulnerability exists in Skype for Business, aka "Microsoft Skype for Business Denial of Service Vuln... |
| CVE-2018-8545 | — | — | 5.9% | Nov 14, 2018 | An information disclosure vulnerability exists in the way that Microsoft Edge handles cross-origin requests, aka "Micros... |
| CVE-2018-8544 | — | — | 47.6% | Nov 14, 2018 | A remote code execution vulnerability exists in the way that the VBScript engine handles objects in memory, aka "Windows... |
| CVE-2018-8543 | — | — | 14.2% | Nov 14, 2018 | A remote code execution vulnerability exists in the way that the Chakra scripting engine handles objects in memory in Mi... |
| CVE-2018-8542 | — | — | 14.2% | Nov 14, 2018 | A remote code execution vulnerability exists in the way that the Chakra scripting engine handles objects in memory in Mi... |
| CVE-2018-8541 | — | — | 14.2% | Nov 14, 2018 | A remote code execution vulnerability exists in the way that the Chakra scripting engine handles objects in memory in Mi... |
| CVE-2018-8539 | — | — | 19.1% | Nov 14, 2018 | A remote code execution vulnerability exists in Microsoft Word software when it fails to properly handle objects in memo... |
| CVE-2018-8524 | — | — | 19.1% | Nov 14, 2018 | A remote code execution vulnerability exists in Microsoft Outlook software when it fails to properly handle objects in m... |
| CVE-2018-8522 | — | — | 18.8% | Nov 14, 2018 | A remote code execution vulnerability exists in Microsoft Outlook software when it fails to properly handle objects in m... |
| CVE-2018-8485 | — | — | 1.2% | Nov 14, 2018 | An elevation of privilege vulnerability exists when DirectX improperly handles objects in memory, aka "DirectX Elevation... |
| CVE-2018-8476 | — | — | 63.3% | Nov 14, 2018 | A remote code execution vulnerability exists in the way that Windows Deployment Services TFTP Server handles objects in ... |
| CVE-2018-8471 | — | — | 1.2% | Nov 14, 2018 | An elevation of privilege vulnerability exists in the way that the Microsoft RemoteFX Virtual GPU miniport driver handle... |
| CVE-2018-8454 | — | — | 3.3% | Nov 14, 2018 | An information disclosure vulnerability exists when Windows Audio Service fails to properly handle objects in memory, ak... |
| CVE-2018-8450 | — | — | 16.1% | Nov 14, 2018 | A remote code execution vulnerability exists when Windows Search handles objects in memory, aka "Windows Search Remote C... |
| CVE-2018-8417 | — | — | 2.0% | Nov 14, 2018 | A security feature bypass vulnerability exists in Microsoft JScript that could allow an attacker to bypass Device Guard,... |
Check if your code is affected by 2018 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now