2018 CVE Vulnerabilities
17,817 CVEs published in 2018.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2018-19124 | — | — | 2.9% | Nov 9, 2018 | PrestaShop 1.6.x before 1.6.1.23 and 1.7.x before 1.7.4.4 on Windows allows remote attackers to write to arbitrary image... |
| CVE-2018-19122 | — | — | 1.2% | Nov 9, 2018 | An issue has been found in libIEC61850 v1.3. It is a NULL pointer dereference in Ethernet_sendPacket in ethernet_bsd.c. |
| CVE-2018-19121 | — | — | 1.2% | Nov 9, 2018 | An issue has been found in libIEC61850 v1.3. It is a SEGV in Ethernet_receivePacket in ethernet_bsd.c. |
| CVE-2018-7718 | — | — | 0.7% | Nov 8, 2018 | An issue was discovered in Telexy QPath 5.4.462. A low privileged authenticated user supplying a specially crafted seria... |
| CVE-2018-19115 | — | — | 3.7% | Nov 8, 2018 | keepalived before 2.0.7 has a heap-based buffer overflow when parsing HTTP status codes resulting in DoS or possibly uns... |
| CVE-2018-19046 | — | — | 0.4% | Nov 8, 2018 | keepalived 2.0.8 didn't check for existing plain files when writing data to a temporary file upon a call to PrintData or... |
| CVE-2018-19045 | — | — | 2.4% | Nov 8, 2018 | keepalived 2.0.8 used mode 0666 when creating new temporary files upon a call to PrintData or PrintStats, potentially le... |
| CVE-2018-19044 | — | — | 0.5% | Nov 8, 2018 | keepalived 2.0.8 didn't check for pathnames with symlinks when writing data to a temporary file upon a call to PrintData... |
| CVE-2018-6438 | — | — | 0.4% | Nov 8, 2018 | A Vulnerability in the supportsave command of Brocade Fabric OS command line interface (CLI) versions before 8.2.1, 8.1.... |
| CVE-2018-6437 | — | — | 0.4% | Nov 8, 2018 | A Vulnerability in the help command of Brocade Fabric OS command line interface (CLI) versions before 8.2.1, 8.1.2f, 8.0... |
| CVE-2018-6436 | — | — | 0.4% | Nov 8, 2018 | A Vulnerability in the firmwaredownload command of Brocade Fabric OS command line interface (CLI) versions before 8.2.1,... |
| CVE-2018-19114 | — | — | 1.3% | Nov 8, 2018 | An issue was discovered in MinDoc through v1.0.2. It allows attackers to gain privileges by uploading an image file with... |
| CVE-2018-0284 | — | — | 1.6% | Nov 8, 2018 | A vulnerability in the local status page functionality of the Cisco Meraki MR, MS, MX, Z1, and Z3 product lines could al... |
| CVE-2018-6442 | — | — | 2.1% | Nov 8, 2018 | A vulnerability in the Brocade Webtools firmware update section of Brocade Fabric OS before 8.2.1, 8.1.2f, 8.0.2f, 7.4.2... |
| CVE-2018-6441 | — | — | 0.4% | Nov 8, 2018 | A vulnerability in Secure Shell implementation of Brocade Fabric OS versions before 8.2.1, 8.1.2f, 8.0.2f, 7.4.2d could ... |
| CVE-2018-6435 | — | — | 0.4% | Nov 8, 2018 | A Vulnerability in the secryptocfg command of Brocade Fabric OS command line interface (CLI) versions before 8.2.1, 8.1.... |
| CVE-2018-6434 | — | — | 1.2% | Nov 8, 2018 | A vulnerability in the web management interface of Brocade Fabric OS versions before 8.2.1, 8.1.2f, 8.0.2f, 7.4.2d could... |
| CVE-2018-6433 | — | — | 0.3% | Nov 8, 2018 | A vulnerability in the secryptocfg export command of Brocade Fabric OS versions before 8.2.1, 8.1.2f, 8.0.2f, 7.4.2d cou... |
| CVE-2018-1314 | — | — | 2.0% | Nov 8, 2018 | In Apache Hive 2.3.3, 3.1.0 and earlier, Hive "EXPLAIN" operation does not check for necessary authorization of involved... |
| CVE-2018-11777 | — | — | 2.3% | Nov 8, 2018 | In Apache Hive 2.3.3, 3.1.0 and earlier, local resources on HiveServer2 machines are not properly protected against mali... |
| CVE-2018-19111 | — | — | 0.2% | Nov 8, 2018 | The Google Cardboard application 1.8 for Android and 1.2 for iOS sends potentially private cleartext information to the ... |
| CVE-2018-19110 | — | — | 1.2% | Nov 8, 2018 | The skin-management feature in tianti 2.3 allows remote authenticated users to bypass intended permission restrictions b... |
| CVE-2018-19109 | — | — | 1.8% | Nov 8, 2018 | tianti 2.3 allows remote authenticated users to bypass intended permission restrictions by visiting tianti-module-admin/... |
| CVE-2018-19105 | — | — | 1.5% | Nov 8, 2018 | LibreCAD 2.1.3 allows remote attackers to cause a denial of service (0x89C04589 write access violation and application c... |
| CVE-2018-19104 | — | — | 0.6% | Nov 8, 2018 | In BageCMS 3.1.3, upload/index.php has a CSRF vulnerability that can be used to upload arbitrary files and get server pr... |
Check if your code is affected by 2018 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now