2018 CVE Vulnerabilities
17,817 CVEs published in 2018.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2018-7238 | CRITICAL | 9.8 | 2.8% | Mar 9, 2018 | A buffer overflow vulnerability exist in the web-based GUI of Schneider Electric's Pelco Sarix Professional in all firmw... |
| CVE-2018-7237 | CRITICAL | 9.1 | 1.7% | Mar 9, 2018 | A vulnerability exists in Schneider Electric's Pelco Sarix Professional in all firmware versions prior to 3.29.67 which ... |
| CVE-2018-7233 | CRITICAL | 9.8 | 2.1% | Mar 9, 2018 | A vulnerability exists in Schneider Electric's Pelco Sarix Professional in all firmware versions prior to 3.29.67 which ... |
| CVE-2018-7232 | CRITICAL | 9.8 | 2.1% | Mar 9, 2018 | A vulnerability exists in Schneider Electric's Pelco Sarix Professional in all firmware versions prior to 3.29.67 which ... |
| CVE-2018-7231 | CRITICAL | 9.8 | 2.1% | Mar 9, 2018 | A vulnerability exists in Schneider Electric's Pelco Sarix Professional in all firmware versions prior to 3.29.67 which ... |
| CVE-2018-7229 | CRITICAL | 9.8 | 2.2% | Mar 9, 2018 | A vulnerability exists in Schneider Electric's Pelco Sarix Professional in all firmware versions prior to 3.29.67 which ... |
| CVE-2018-7228 | CRITICAL | 9.8 | 2.2% | Mar 9, 2018 | A vulnerability exists in Schneider Electric's Pelco Sarix Professional in all firmware versions prior to 3.29.67 which ... |
| CVE-2018-0147 | CRITICAL | 9.8 | 18.6% | Mar 8, 2018 | A vulnerability in Java deserialization used by Cisco Secure Access Control System (ACS) prior to release 5.8 patch 9 co... |
| CVE-2018-6530 | CRITICAL | 9.8 | 96.6% | Mar 6, 2018 | OS command injection vulnerability in soap.cgi (soapcgi_main in cgibin) in D-Link DIR-880L DIR-880L_REVA_FIRMWARE_PATCH_... |
| CVE-2018-7648 | CRITICAL | 9.8 | 1.7% | Mar 2, 2018 | An issue was discovered in mj2/opj_mj2_extract.c in OpenJPEG 2.3.0. The output prefix was not checked for length, which ... |
| CVE-2018-6641 | CRITICAL | 9.8 | 5.7% | Feb 28, 2018 | An Arbitrary Free (Remote Code Execution) issue was discovered in Design Science MathType 6.9c. Crafted input can overwr... |
| CVE-2018-6640 | CRITICAL | 9.8 | 4.0% | Feb 28, 2018 | A Heap Overflow (Remote Code Execution) issue was discovered in Design Science MathType 6.9c. Crafted input can modify t... |
| CVE-2018-6639 | CRITICAL | 9.8 | 3.7% | Feb 28, 2018 | An out-of-bounds write (Remote Code Execution) issue was discovered in Design Science MathType 6.9c. A size used by memm... |
| CVE-2018-6638 | CRITICAL | 9.8 | 4.0% | Feb 28, 2018 | A stack-based buffer overflow (Remote Code Execution) issue was discovered in Design Science MathType 6.9c. This occurs ... |
| CVE-2018-6481 | CRITICAL | 9.8 | 20.1% | Feb 27, 2018 | A buffer overflow vulnerability in the control protocol of Disk Savvy Enterprise v10.4.18 allows remote attackers to exe... |
| CVE-2018-0015 | CRITICAL | 9.8 | 1.1% | Feb 22, 2018 | A malicious user with unrestricted access to the AppFormix application management platform may be able to access a Pytho... |
| CVE-2018-7318 | CRITICAL | 9.8 | 9.0% | Feb 22, 2018 | SQL Injection exists in the CheckList 1.1.1 component for Joomla! via the title_search, tag_search, name_search, descrip... |
| CVE-2018-7300 | CRITICAL | 9.8 | 31.8% | Feb 22, 2018 | Directory Traversal / Arbitrary File Write / Remote Code Execution in the User.setLanguage method in eQ-3 AG Homematic C... |
| CVE-2018-6487 | CRITICAL | 9.8 | 1.9% | Feb 20, 2018 | Remote Disclosure of Information in Micro Focus Universal CMDB Foundation Software, version numbers 10.10, 10.11, 10.20,... |
| CVE-2018-5475 | CRITICAL | 9.8 | 3.9% | Feb 19, 2018 | A Stack-based Buffer Overflow issue was discovered in GE D60 Line Distance Relay devices running firmware Version 7.11 a... |
| CVE-2018-5473 | CRITICAL | 9.8 | 5.9% | Feb 19, 2018 | An Improper Restriction of Operations within the Bounds of a Memory Buffer issue was discovered in GE D60 Line Distance ... |
| CVE-2018-6373 | CRITICAL | 9.8 | 2.0% | Feb 17, 2018 | SQL Injection exists in the Fastball 2.5 component for Joomla! via the season parameter in a view=player action. |
| CVE-2018-5989 | CRITICAL | 9.8 | 2.7% | Feb 17, 2018 | SQL Injection exists in the ccNewsletter 2.x component for Joomla! via the id parameter in a task=removeSubscriber actio... |
| CVE-2018-5440 | CRITICAL | 9.8 | 3.1% | Feb 15, 2018 | A Stack-based Buffer Overflow issue was discovered in 3S-Smart CODESYS Web Server. Specifically: all Microsoft Windows (... |
| CVE-2018-6789 | CRITICAL | 9.8 | 82.2% | Feb 8, 2018 | An issue was discovered in the base64d function in the SMTP listener in Exim before 4.90.1. By sending a handcrafted mes... |
Check if your code is affected by 2018 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now