2018 CVE Vulnerabilities
17,817 CVEs published in 2018.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2018-18544 | — | — | 2.0% | Oct 21, 2018 | There is a memory leak in the function WriteMSLImage of coders/msl.c in ImageMagick 7.0.8-13 Q16, and the function Proce... |
| CVE-2018-18541 | — | — | 3.0% | Oct 20, 2018 | In Teeworlds before 0.6.5, connection packets could be forged. There was no challenge-response involved in the connectio... |
| CVE-2018-18540 | — | — | 0.8% | Oct 20, 2018 | TeaKKi 2.7 allows XSS via a crafted onerror attribute for a picture's URL. |
| CVE-2018-18438 | — | — | 0.4% | Oct 19, 2018 | Qemu has integer overflows because IOReadHandler and its associated functions use a signed integer data type for a size ... |
| CVE-2018-18428 | — | — | 11.5% | Oct 19, 2018 | TP-Link TL-SC3130 1.6.18P12_121101 devices allow unauthenticated RTSP stream access, as demonstrated by a /jpg/image.jpg... |
| CVE-2018-18420 | — | — | 0.8% | Oct 19, 2018 | Cross-Site Request Forgery (CSRF) vulnerability was discovered in the 8.3 version of Zenario Content Management System v... |
| CVE-2018-18419 | — | — | 1.6% | Oct 19, 2018 | Stored XSS has been discovered in the upload section of ARDAWAN.COM User Management 1.1, as demonstrated by a .jpg filen... |
| CVE-2018-18417 | — | — | 1.6% | Oct 19, 2018 | In the 3.1 version of Ekushey Project Manager CRM, Stored XSS has been discovered in the input and upload sections, as d... |
| CVE-2018-18416 | — | — | 1.7% | Oct 19, 2018 | LANGO Codeigniter Multilingual Script 1.0 has XSS in the input and upload sections, as demonstrated by the site_name par... |
| CVE-2018-18398 | — | — | 0.3% | Oct 19, 2018 | Xfce Thunar 1.6.15, when Xfce 4.12 is used, mishandles the IBus-Unikey input method for file searches within File Manage... |
| CVE-2018-18284 | — | — | 16.3% | Oct 19, 2018 | Artifex Ghostscript 9.25 and earlier allows attackers to bypass a sandbox protection mechanism via vectors involving the... |
| CVE-2018-18224 | — | — | 2.2% | Oct 19, 2018 | A vulnerability exists in the file reading procedure in Open Design Alliance Drawings SDK 2019Update1 on non-Windows pla... |
| CVE-2018-18223 | — | — | 2.2% | Oct 19, 2018 | Open Design Alliance Drawings SDK 2019Update1 has a vulnerability during the reading of malformed files, allowing attack... |
| CVE-2018-18026 | — | — | 0.8% | Oct 19, 2018 | IMFCameraProtect.sys in IObit Malware Fighter 6.2 (and possibly lower versions) is vulnerable to a stack-based buffer ov... |
| CVE-2018-12675 | — | — | 2.6% | Oct 19, 2018 | The SV3C HD Camera (L-SERIES V2.3.4.2103-S50-NTD-B20170508B and V2.3.4.2103-S50-NTD-B20170823B) does not perform origin ... |
| CVE-2018-12674 | — | — | 0.6% | Oct 19, 2018 | The SV3C HD Camera (L-SERIES V2.3.4.2103-S50-NTD-B20170508B and V2.3.4.2103-S50-NTD-B20170823B) stores the username and ... |
| CVE-2018-12673 | — | — | 1.2% | Oct 19, 2018 | An attacker with remote access to the SV3C HD Camera (L-SERIES V2.3.4.2103-S50-NTD-B20170508B and V2.3.4.2103-S50-NTD-B2... |
| CVE-2018-12672 | — | — | 0.5% | Oct 19, 2018 | The SV3C HD Camera (L-SERIES V2.3.4.2103-S50-NTD-B20170508B) does not perform proper validation on user-supplied input a... |
| CVE-2018-12671 | — | — | 1.3% | Oct 19, 2018 | An attacker with remote access to the SV3C HD Camera (L-SERIES V2.3.4.2103-S50-NTD-B20170508B and V2.3.4.2103-S50-NTD-B2... |
| CVE-2018-12670 | — | — | 3.3% | Oct 19, 2018 | SV3C L-SERIES HD CAMERA V2.3.4.2103-S50-NTD-B20170508B and V2.3.4.2103-S50-NTD-B20170823B devices allow OS Command Injec... |
| CVE-2018-12669 | — | — | 1.4% | Oct 19, 2018 | SV3C L-SERIES HD CAMERA V2.3.4.2103-S50-NTD-B20170508B and V2.3.4.2103-S50-NTD-B20170823B devices allow remote authentic... |
| CVE-2018-12668 | — | — | 1.7% | Oct 19, 2018 | SV3C L-SERIES HD CAMERA V2.3.4.2103-S50-NTD-B20170508B and V2.3.4.2103-S50-NTD-B20170823B devices have a Hard-coded Pass... |
| CVE-2018-12667 | — | — | 1.5% | Oct 19, 2018 | The SV3C HD Camera (L-SERIES V2.3.4.2103-S50-NTD-B20170508B and V2.3.4.2103-S50-NTD-B20170823B) is affected by an improp... |
| CVE-2018-12666 | — | — | 1.8% | Oct 19, 2018 | SV3C L-SERIES HD CAMERA V2.3.4.2103-S50-NTD-B20170508B devices improperly identifies users only by the authentication le... |
| CVE-2018-18531 | — | — | 1.5% | Oct 19, 2018 | text/impl/DefaultTextCreator.java, text/impl/ChineseTextProducer.java, and text/impl/FiveLetterFirstNameTextCreator.java... |
Check if your code is affected by 2018 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now