2018 CVE Vulnerabilities

17,817 CVEs published in 2018.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2018-3979MEDIUM6.5A remote denial-of-service vulnerability exists in the way the Nouveau Display Driver (the default Ubuntu Nvidia display...
CVE-2018-13299MEDIUM4.3Relative path traversal vulnerability in Attachment Uploader in Synology Calendar before 2.2.2-0532 allows remote authen...
CVE-2018-13298MEDIUM4.2Channel accessible by non-endpoint vulnerability in privacy page in Synology Android Moments before 1.2.3-199 allows man...
CVE-2018-13297MEDIUM5.3Information exposure vulnerability in SYNO.SynologyDrive.Files in Synology Drive before 1.1.2-10562 allows remote attack...
CVE-2018-13295MEDIUM4.3Information exposure vulnerability in SYNO.Personal.Application.Info in Synology Application Service before 1.5.4-0320 a...
CVE-2018-13294MEDIUM4.3Information exposure vulnerability in SYNO.Personal.Profile in Synology Application Service before 1.5.4-0320 allows rem...
CVE-2018-13293MEDIUM5.9Cross-site scripting (XSS) vulnerability in Control Panel SSO Settings in Synology DiskStation Manager (DSM) before 6.2....
CVE-2018-13292MEDIUM4.3Information exposure vulnerability in /usr/syno/etc/mount.conf in Synology Router Manager (SRM) before 1.1.7-6941-2 allo...
CVE-2018-13291MEDIUM4.3Information exposure vulnerability in /usr/syno/etc/mount.conf in Synology DiskStation Manager (DSM) before 6.2.1-23824 ...
CVE-2018-13290MEDIUM4.3Information exposure vulnerability in SYNO.Core.ACL in Synology Router Manager (SRM) before 1.1.7-6941-2 allows remote a...
CVE-2018-13289MEDIUM5.3Information exposure vulnerability in SYNO.FolderSharing.List in Synology Router Manager (SRM) before 1.1.7-6941-2 allow...
CVE-2018-13288MEDIUM5.3Information exposure vulnerability in SYNO.FolderSharing.List in Synology File Station before 1.2.3-0252 and before 1.1....
CVE-2018-13287MEDIUM6.5Incorrect default permissions vulnerability in synouser.conf in Synology Router Manager (SRM) before 1.1.7-6941-1 allows...
CVE-2018-13286MEDIUM6.5Incorrect default permissions vulnerability in synouser.conf in Synology Diskstation Manager (DSM) before 6.2-23739-1 al...
CVE-2018-19644MEDIUM5Reflected cross site script issue in Micro Focus Solutions Business Manager (SBM) (formerly Serena Business Manager (SBM...
CVE-2018-19643MEDIUM4.7Information leakage issue in Micro Focus Solutions Business Manager (SBM) (formerly Serena Business Manager (SBM)) versi...
CVE-2018-12546MEDIUM6.5In Eclipse Mosquitto version 1.0 to 1.5.5 (inclusive) when a client publishes a retained message to a topic, then has it...
CVE-2018-19642MEDIUM5.1Denial of service issue in Micro Focus Solutions Business Manager (SBM) (formerly Serena Business Manager (SBM)) version...
CVE-2018-19641MEDIUM6.1Unauthenticated remote code execution issue in Micro Focus Solutions Business Manager (SBM) (formerly Serena Business Ma...
CVE-2018-10934MEDIUM5.4A cross-site scripting (XSS) vulnerability was found in the JBoss Management Console versions before 7.1.6.CR1, 7.1.6.GA...
CVE-2018-16856MEDIUM5.5In a default Red Hat Openstack Platform Director installation, openstack-octavia before versions openstack-octavia 2.0.2...
CVE-2018-15583MEDIUM6.1Cross-Site Scripting (XSS) vulnerability in point_list.php in GNUBOARD5 before 5.3.1.6 allows remote attackers to inject...
CVE-2018-16838MEDIUM5.4A flaw was found in sssd Group Policy Objects implementation. When the GPO is not readable by SSSD due to a too strict p...
CVE-2018-1992MEDIUM6.4The IBM Power 9 OP910, OP920, and FW910 boot firmware's bootloader is responsible for loading and validating the initial...
CVE-2018-1836MEDIUM5.4IBM WebSphere MQ 9.0.2, 9.0.3, 9.0.4, 9.0.5, 9.1.0.0, and 9.1.0.1 console is vulnerable to cross-site scripting. This vu...

Check if your code is affected by 2018 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now