2018 CVE Vulnerabilities
17,817 CVEs published in 2018.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2018-1893 | MEDIUM | 5.4 | 0.6% | Jun 27, 2019 | IBM Rational Collaborative Lifecycle Management 6.0 through 6.0.6.1 is vulnerable to cross-site scripting. This vulnerab... |
| CVE-2018-1892 | MEDIUM | 5.4 | 0.6% | Jun 27, 2019 | IBM Rational Collaborative Lifecycle Management 6.0 through 6.0.6.1 is vulnerable to cross-site scripting. This vulnerab... |
| CVE-2018-1828 | MEDIUM | 5.4 | 0.6% | Jun 27, 2019 | IBM Rational Collaborative Lifecycle Management 6.0 through 6.0.6.1 is vulnerable to cross-site scripting. This vulnerab... |
| CVE-2018-1827 | MEDIUM | 5.4 | 0.6% | Jun 27, 2019 | IBM Rational Collaborative Lifecycle Management 6.0 through 6.0.6.1 is vulnerable to cross-site scripting. This vulnerab... |
| CVE-2018-1826 | MEDIUM | 5.4 | 0.6% | Jun 27, 2019 | IBM Rational Collaborative Lifecycle Management 6.0 through 6.0.6.1 is vulnerable to cross-site scripting. This vulnerab... |
| CVE-2018-1760 | MEDIUM | 5.4 | 0.6% | Jun 27, 2019 | IBM Rational Collaborative Lifecycle Management 6.0 through 6.0.6.1 is vulnerable to cross-site scripting. This vulnerab... |
| CVE-2018-1758 | MEDIUM | 5.4 | 0.6% | Jun 27, 2019 | IBM Rational Collaborative Lifecycle Management 6.0 through 6.0.6.1 is vulnerable to cross-site scripting. This vulnerab... |
| CVE-2018-1734 | MEDIUM | 4.3 | 0.9% | Jun 27, 2019 | IBM Rational Collaborative Lifecycle Management 6.0 through 6.0.6.1 discloses sensitive information in error messages th... |
| CVE-2018-20846 | MEDIUM | 6.5 | 2.2% | Jun 26, 2019 | Out-of-bounds accesses in the functions pi_next_lrcp, pi_next_rlcp, pi_next_rpcl, pi_next_pcrl, pi_next_rpcl, and pi_nex... |
| CVE-2018-20845 | MEDIUM | 6.5 | 2.3% | Jun 26, 2019 | Division-by-zero vulnerabilities in the functions pi_next_pcrl, pi_next_cprl, and pi_next_rpcl in openmj2/pi.c in OpenJP... |
| CVE-2018-2013 | MEDIUM | 5.3 | 1.8% | Jun 25, 2019 | IBM API Connect 2018.1 through 2018.4.1.5 could disclose sensitive information to an unauthorized user that could aid in... |
| CVE-2018-2011 | MEDIUM | 5.3 | 2.8% | Jun 25, 2019 | IBM API Connect 2018.1 through 2018.4.1.5 could allow an attacker to obtain sensitive information from a specially craft... |
| CVE-2018-15913 | MEDIUM | 6.1 | 0.6% | Jun 20, 2019 | An issue was discovered in Cloudera Manager 5.x through 5.15.0. One type of page in Cloudera Manager uses a 'returnUrl' ... |
| CVE-2018-18886 | MEDIUM | 6.1 | 0.9% | Jun 18, 2019 | Helpy v2.1.0 has Stored XSS via the Ticket title. |
| CVE-2018-20472 | MEDIUM | 5.4 | 2.1% | Jun 17, 2019 | An issue was discovered in Tyto Sahi Pro through 7.x.x and 8.0.0. The logs web interface is vulnerable to stored XSS. |
| CVE-2018-20523 | MEDIUM | 5.3 | 10.0% | Jun 7, 2019 | Xiaomi Stock Browser 10.2.4.g on Xiaomi Redmi Note 5 Pro devices and other Redmi Android phones allows content provider ... |
| CVE-2018-2028 | MEDIUM | 6.5 | 0.8% | Jun 6, 2019 | IBM Maximo Asset Management 7.6 could allow a an authenticated user to replace a target page with a phishing site which ... |
| CVE-2018-13380 | MEDIUM | 6.1 | 62.5% | Jun 4, 2019 | A Cross-site Scripting (XSS) vulnerability in Fortinet FortiOS 6.0.0 to 6.0.4, 5.6.0 to 5.6.7, 5.4.0 to 5.4.12, 5.2 and ... |
| CVE-2018-12130 | MEDIUM | 5.9 | 1.6% | May 30, 2019 | Microarchitectural Fill Buffer Data Sampling (MFBDS): Fill buffers on some microprocessors utilizing speculative executi... |
| CVE-2018-12127 | MEDIUM | 5.6 | 1.5% | May 30, 2019 | Microarchitectural Load Port Data Sampling (MLPDS): Load ports on some microprocessors utilizing speculative execution m... |
| CVE-2018-12126 | MEDIUM | 5.6 | 1.5% | May 30, 2019 | Microarchitectural Store Buffer Data Sampling (MSBDS): Store buffers on some microprocessors utilizing speculative execu... |
| CVE-2018-13383 | MEDIUM | 6.5 | 33.6% | May 29, 2019 | A heap buffer overflow in Fortinet FortiOS 6.0.0 through 6.0.4, 5.6.0 through 5.6.10, 5.4.0 through 5.4.12, 5.2.14 and e... |
| CVE-2018-20008 | MEDIUM | 6.8 | 0.3% | May 28, 2019 | iBall Baton iB-WRB302N20122017 devices have improper access control over the UART interface, allowing physical attackers... |
| CVE-2018-7851 | MEDIUM | 6.5 | 1.2% | May 22, 2019 | CWE-119: Buffer errors vulnerability exists in Modicon M580 with firmware prior to V2.50, Modicon M340 with firmware pri... |
| CVE-2018-7850 | MEDIUM | 5.3 | 1.5% | May 22, 2019 | A CWE-807: Reliance on Untrusted Inputs in a Security Decision vulnerability exists in all versions of the Modicon M580,... |
Check if your code is affected by 2018 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now