2018 CVE Vulnerabilities
17,817 CVEs published in 2018.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2018-18739 | — | — | 0.5% | Oct 29, 2018 | An XSS issue was discovered in SEMCMS 3.4 via the admin/SEMCMS_Products.php?lgid=1 Keywords field. |
| CVE-2018-18738 | — | — | 0.5% | Oct 29, 2018 | An XSS issue was discovered in SEMCMS 3.4 via the admin/SEMCMS_Categories.php?pid=1&lgid=1 category_key parameter. |
| CVE-2018-18737 | — | — | 1.2% | Oct 29, 2018 | An XXE issue was discovered in Douchat 4.0.4 because Data\notify.php calls simplexml_load_string. This can also be used ... |
| CVE-2018-18736 | — | — | 0.6% | Oct 29, 2018 | An XSS issue was discovered in catfish blog 2.0.33, related to "write source code." |
| CVE-2018-18735 | — | — | 0.5% | Oct 29, 2018 | A CSRF issue was discovered in admin/Index/tiquan in catfish blog 2.0.33. |
| CVE-2018-18734 | — | — | 0.5% | Oct 29, 2018 | A CSRF issue was discovered in admin/Index/addmanageuser.html in Catfish CMS 4.8.30. |
| CVE-2018-18733 | — | — | 0.5% | Oct 29, 2018 | An XSS issue was discovered in Catfish CMS 4.8.30, related to "write source code," a similar issue to CVE-2018-13999. |
| CVE-2018-18732 | — | — | 1.1% | Oct 29, 2018 | An issue was discovered on Tenda AC7 V15.03.06.44_CN, AC9 V15.03.05.19(6318)_CN, AC10 V15.03.06.23_CN, AC15 V15.03.05.19... |
| CVE-2018-18731 | — | — | 1.1% | Oct 29, 2018 | An issue was discovered on Tenda AC7 V15.03.06.44_CN, AC9 V15.03.05.19(6318)_CN, AC10 V15.03.06.23_CN, AC15 V15.03.05.19... |
| CVE-2018-18730 | — | — | 1.1% | Oct 29, 2018 | An issue was discovered on Tenda AC7 V15.03.06.44_CN, AC9 V15.03.05.19(6318)_CN, AC10 V15.03.06.23_CN, AC15 V15.03.05.19... |
| CVE-2018-18729 | — | — | 1.3% | Oct 29, 2018 | An issue was discovered on Tenda AC7 V15.03.06.44_CN, AC9 V15.03.05.19(6318)_CN, AC10 V15.03.06.23_CN, AC15 V15.03.05.19... |
| CVE-2018-18728 | — | — | 3.0% | Oct 29, 2018 | An issue was discovered on Tenda AC9 V15.03.05.19(6318)_CN, AC15 V15.03.05.19_CN, and AC18 V15.03.05.19(6318)_CN devices... |
| CVE-2018-18727 | — | — | 1.1% | Oct 29, 2018 | An issue was discovered on Tenda AC7 V15.03.06.44_CN, AC9 V15.03.05.19(6318)_CN, AC10 V15.03.06.23_CN, AC15 V15.03.05.19... |
| CVE-2018-18726 | — | — | 0.6% | Oct 29, 2018 | An XSS issue was discovered in admin/sitelink/editsitelink?id=16 in YUNUCMS 1.1.5. |
| CVE-2018-18725 | — | — | 0.6% | Oct 29, 2018 | An XSS issue was discovered in admin/banner/editbanner?id=20 in YUNUCMS 1.1.5. |
| CVE-2018-18724 | — | — | 0.6% | Oct 29, 2018 | An XSS issue was discovered in index.php/admin/category/editcategory?id=73 in YUNUCMS 1.1.5. |
| CVE-2018-18723 | — | — | 0.6% | Oct 29, 2018 | An XSS issue was discovered in index.php/admin/area/editarea/id/110000 in YUNUCMS 1.1.5. |
| CVE-2018-18722 | — | — | 0.6% | Oct 29, 2018 | An XSS issue was discovered in admin/content/editcontent?id=29&gopage=1 in YUNUCMS 1.1.5. |
| CVE-2018-18721 | — | — | 0.6% | Oct 29, 2018 | An XSS issue was discovered in admin/link/editlink?id=5 in YUNUCMS 1.1.5. |
| CVE-2018-18720 | — | — | 0.6% | Oct 29, 2018 | An XSS issue was discovered in index.php/admin/system/basic in YUNUCMS 1.1.5. |
| CVE-2018-18718 | — | — | 0.4% | Oct 29, 2018 | An issue was discovered in gThumb through 3.6.2. There is a double-free vulnerability in the add_themes_from_dir method ... |
| CVE-2018-18717 | — | — | 0.5% | Oct 29, 2018 | An issue was discovered in Eleanor CMS through 2015-03-19. XSS exists via the ajax.php?direct=admin&file=autocomplete&qu... |
| CVE-2018-18713 | — | — | 2.3% | Oct 29, 2018 | The function down_sql_action() in /admin/model/database.class.php in PHPYun 4.6 allows remote attackers to read arbitrar... |
| CVE-2018-18712 | — | — | 0.7% | Oct 29, 2018 | An issue was discovered in WUZHI CMS 4.1.0. There is a CSRF vulnerability that can change the super administrator's user... |
| CVE-2018-18711 | — | — | 0.7% | Oct 29, 2018 | An issue was discovered in WUZHI CMS 4.1.0. There is a CSRF vulnerability that can change the super administrator's pass... |
Check if your code is affected by 2018 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now