2018 CVE Vulnerabilities

17,817 CVEs published in 2018.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2018-14468HIGH7.5The FRF.16 parser in tcpdump before 4.9.3 has a buffer over-read in print-fr.c:mfr_print().
CVE-2018-14467HIGH7.5The BGP parser in tcpdump before 4.9.3 has a buffer over-read in print-bgp.c:bgp_capabilities_print() (BGP_CAPCODE_MP).
CVE-2018-14466HIGH7.5The Rx parser in tcpdump before 4.9.3 has a buffer over-read in print-rx.c:rx_cache_find() and rx_cache_insert().
CVE-2018-14465HIGH7.5The RSVP parser in tcpdump before 4.9.3 has a buffer over-read in print-rsvp.c:rsvp_obj_print().
CVE-2018-14464HIGH7.5The LMP parser in tcpdump before 4.9.3 has a buffer over-read in print-lmp.c:lmp_print_data_link_subobjs().
CVE-2018-14463HIGH7.5The VRRP parser in tcpdump before 4.9.3 has a buffer over-read in print-vrrp.c:vrrp_print() for VRRP version 2, a differ...
CVE-2018-14462HIGH7.5The ICMP parser in tcpdump before 4.9.3 has a buffer over-read in print-icmp.c:icmp_print().
CVE-2018-14461HIGH7.5The LDP parser in tcpdump before 4.9.3 has a buffer over-read in print-ldp.c:ldp_tlv_print().
CVE-2018-9425HIGH7.8In Platform, there is a possible bypass of user interaction requirements due to missing permission checks. This could le...
CVE-2018-19592HIGH7.8The "CLink4Service" service is installed with Corsair Link 4.9.7.35 with insecure permissions by default. This allows un...
CVE-2018-21019HIGH7.5Home Assistant before 0.67.0 was vulnerable to an information disclosure that allowed an unauthenticated attacker to rea...
CVE-2018-20336HIGH7.5An issue was discovered in ASUSWRT 3.0.0.4.384.20308. There is a stack-based buffer overflow issue in parse_req_queries ...
CVE-2018-21011HIGH7.5The charitable plugin before 1.5.14 for WordPress has unauthorized access to user and donation details.
CVE-2018-18630HIGH7.8A vulnerability was found in McKesson Cardiology product 13.x and 14.x. Insecure file permissions in the default install...
CVE-2018-21010HIGH8.8OpenJPEG before 2.3.1 has a heap buffer overflow in color_apply_icc_profile in bin/common/color.c.
CVE-2018-1796HIGH7.8IBM Informix Dynamic Server Enterprise Edition 12.1 could allow a local user to load malicious libraries and gain root p...
CVE-2018-1987HIGH7.8IBM Spectrum Protect for Enterprise Resource Planning 7.1 and 8.1, if tracing is activated, the IBM Spectrum Protect nod...
CVE-2018-10899HIGH8.1A flaw was found in Jolokia versions from 1.2 to before 1.6.1. Affected versions are vulnerable to a system-wide CSRF. T...
CVE-2018-16860HIGH7.5A flaw was found in samba's Heimdal KDC implementation, versions 4.8.x up to, excluding 4.8.12, 4.9.x up to, excluding 4...
CVE-2018-16871HIGH7.5A flaw was found in the Linux kernel's NFS implementation, all versions 3.x and all versions 4.x up to 4.20. An attacker...
CVE-2018-2024HIGH8.1IBM QRadar SIEM 7.2 and 7.3 specifies permissions for a security-critical resource in a way that allows that resource to...
CVE-2018-7838HIGH7.5A CWE-119 Buffer Errors vulnerability exists in Modicon M580 CPU - BMEP582040, all versions before V2.90, and Modicon Et...
CVE-2018-19571HIGH7.7GitLab CE/EE, versions 8.18 up to 11.x before 11.3.11, 11.4 before 11.4.8, and 11.5 before 11.5.1, are vulnerable to an ...
CVE-2018-10531HIGH7.5An issue was discovered in the America's Army Proving Grounds platform for the Unreal Engine. With a false packet sent v...
CVE-2018-14550HIGH8.8An issue has been found in third-party PNM decoding associated with libpng 1.6.35. It is a stack-based buffer overflow i...

Check if your code is affected by 2018 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now