2018 CVE Vulnerabilities
17,817 CVEs published in 2018.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2018-4004 | MEDIUM | 5.5 | 0.4% | Apr 17, 2019 | An exploitable privilege escalation vulnerability exists in the Shimo VPN 4.1.5.1 helper service in the disconnectServic... |
| CVE-2018-1925 | MEDIUM | 5.9 | 0.9% | Apr 15, 2019 | IBM WebShere MQ 9.1.0.0, 9.1.0.1, 9.1.1 uses weaker than expected cryptographic algorithms that could allow an attacker ... |
| CVE-2018-1994 | MEDIUM | 6.3 | 1.6% | Apr 10, 2019 | IBM InfoSphere Information Server 11.5 and 11.7 is vulnerable to SQL injection. A remote attacker could send specially-c... |
| CVE-2018-1903 | MEDIUM | 6.7 | 0.4% | Apr 10, 2019 | IBM Sterling Connect:Direct for UNIX 4.2.0, 4.3.0, and 6.0.0 could allow a user with restricted sudo access on a system ... |
| CVE-2018-15635 | MEDIUM | 5.9 | 1.0% | Apr 9, 2019 | Cross-site scripting vulnerability in the Discuss App of Odoo Community 12.0 and earlier, and Odoo Enterprise 12.0 and e... |
| CVE-2018-15631 | MEDIUM | 6.5 | 1.4% | Apr 9, 2019 | Improper access control in the Discuss App of Odoo Community 12.0 and earlier, and Odoo Enterprise 12.0 and earlier allo... |
| CVE-2018-2000 | MEDIUM | 4.3 | 0.8% | Apr 8, 2019 | IBM Business Automation Workflow 18.0.0.0 and 18.0.0.1 is vulnerable to cross-site request forgery which could allow an ... |
| CVE-2018-1999 | MEDIUM | 4.3 | 1.0% | Apr 8, 2019 | IBM Business Automation Workflow 18.0.0.0, 18.0.0.1, and 18.0.0.2 could reveal sensitive version information about the s... |
| CVE-2018-1997 | MEDIUM | 4.3 | 1.4% | Apr 8, 2019 | IBM Business Automation Workflow and Business Process Manager 18.0.0.0, 18.0.0.1, and 18.0.0.2 are vulnerable to a denia... |
| CVE-2018-1943 | MEDIUM | 5.4 | 1.1% | Apr 8, 2019 | IBM Cloud Private 3.1.0 and 3.1.1 is vulnerable to HTTP HOST header injection, caused by improper validation of input. B... |
| CVE-2018-1885 | MEDIUM | 5.3 | 1.8% | Apr 8, 2019 | IBM Business Automation Workflow 18.0.0.0, 18.0.0.1, and 18.0.0.2 could allow an unauthenticated attacker to obtain sens... |
| CVE-2018-1882 | MEDIUM | 4.7 | 0.2% | Apr 8, 2019 | In a certain atypical IBM Spectrum Protect 7.1 and 8.1 configurations, the node password could be displayed in plain tex... |
| CVE-2018-1853 | MEDIUM | 6.1 | 1.2% | Apr 8, 2019 | IBM Tivoli Storage Manager (IBM Spectrum Protect 7.1 and 8.1) could allow a remote attacker to hijack the clicking actio... |
| CVE-2018-1787 | MEDIUM | 5.1 | 0.3% | Apr 8, 2019 | IBM Spectrum Protect 7.1 and 8.1 is affected by a password exposure vulnerability caused by insecure file permissions. I... |
| CVE-2018-1913 | MEDIUM | 5.4 | 1.0% | Apr 3, 2019 | IBM DOORS Next Generation (DNG/RRC) 5.0 through 5.0.3 and 6.0 through 6.0.6 is vulnerable to cross-site scripting. This ... |
| CVE-2018-1731 | MEDIUM | 4.8 | 0.9% | Apr 3, 2019 | IBM DOORS Next Generation (DNG/RRC) 5.0 through 5.0.3 and 6.0 through 6.0.6 is vulnerable to cross-site scripting. This ... |
| CVE-2018-4053 | MEDIUM | 5.5 | 0.3% | Apr 2, 2019 | An exploitable local denial-of-service vulnerability exists in the privileged helper tool of GOG Galaxy's Games, version... |
| CVE-2018-4052 | MEDIUM | 5.5 | 0.4% | Apr 2, 2019 | An exploitable local information leak vulnerability exists in the privileged helper tool of GOG Galaxy's Games, version ... |
| CVE-2018-4051 | MEDIUM | 5.5 | 0.3% | Apr 2, 2019 | An exploitable local privilege escalation vulnerability exists in the privileged helper tool of GOG Galaxy's Games, vers... |
| CVE-2018-1906 | MEDIUM | 4.3 | 1.9% | Apr 2, 2019 | IBM InfoSphere Information Server 11.3, 11.5, and 11.7could allow an authenticated user to download code using a special... |
| CVE-2018-1874 | MEDIUM | 4.6 | 0.4% | Apr 2, 2019 | IBM API Connect 5.0.0.0 through 5.0.8.5 could display highly sensitive information to an attacker with physical access t... |
| CVE-2018-1680 | MEDIUM | 5.9 | 1.5% | Apr 2, 2019 | IBM Security Privileged Identity Manager Virtual Appliance 2.2.1 does not require that users should have strong password... |
| CVE-2018-1625 | MEDIUM | 4.3 | 1.0% | Apr 2, 2019 | IBM Security Privileged Identity Manager Virtual Appliance 2.2.1 generates an error message that includes sensitive info... |
| CVE-2018-1623 | MEDIUM | 4 | 0.4% | Apr 2, 2019 | IBM Security Privileged Identity Manager Virtual Appliance 2.2.1 allows web pages to be stored locally which can be read... |
| CVE-2018-1622 | MEDIUM | 4.3 | 0.5% | Apr 2, 2019 | IBM Security Privileged Identity Manager Virtual Appliance 2.2.1 is vulnerable to cross-site request forgery which could... |
Check if your code is affected by 2018 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now