2018 CVE Vulnerabilities
17,817 CVEs published in 2018.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2018-17956 | HIGH | 7.8 | 0.3% | Mar 15, 2019 | In yast2-samba-provision up to and including version 1.0.1 the password for samba shares was provided on the command lin... |
| CVE-2018-12191 | HIGH | 7.6 | 0.5% | Mar 14, 2019 | Bounds check in Kernel subsystem in Intel CSME before version 11.8.60, 11.11.60, 11.22.60 or 12.0.20, or Intel(R) Server... |
| CVE-2018-0389 | HIGH | 7.5 | 2.5% | Mar 13, 2019 | A vulnerability in the implementation of Session Initiation Protocol (SIP) processing in Cisco Small Business SPA514G IP... |
| CVE-2018-17937 | HIGH | 8.8 | 2.7% | Mar 13, 2019 | gpsd versions 2.90 to 3.17 and microjson versions 1.0 to 1.3, an open source project, allow a stack-based buffer overflo... |
| CVE-2018-1998 | HIGH | 8.8 | 0.4% | Mar 11, 2019 | IBM WebSphere MQ 8.0.0.0 through 9.1.1 could allow a local user to inject code that could be executed with root privileg... |
| CVE-2018-1980 | HIGH | 8.4 | 0.5% | Mar 11, 2019 | IBM DB2 for Linux, UNIX and Windows (includes DB2 Connect Server) 9.7, 10.1, 10.5, and 11.1 is vulnerable to a buffer ov... |
| CVE-2018-1978 | HIGH | 8.4 | 0.5% | Mar 11, 2019 | IBM DB2 for Linux, UNIX and Windows (includes DB2 Connect Server) 9.7, 10.1, 10.5, and 11.1 is vulnerable to a buffer ov... |
| CVE-2018-1974 | HIGH | 7.5 | 1.3% | Mar 11, 2019 | IBM WebSphere 8.0.0.0 through 9.1.1 could allow an authenticated attacker to escalate their privileges when using multip... |
| CVE-2018-1923 | HIGH | 8.4 | 0.5% | Mar 11, 2019 | IBM DB2 for Linux, UNIX and Windows (includes DB2 Connect Server) 9.7, 10.1, 10.5, and 11.1 is affected by buffer overfl... |
| CVE-2018-1922 | HIGH | 8.4 | 0.5% | Mar 11, 2019 | IBM DB2 for Linux, UNIX and Windows (includes DB2 Connect Server) 9.7, 10.1, 10.5, and 11.1 is affected by buffer overfl... |
| CVE-2018-4054 | HIGH | 7.8 | 0.7% | Mar 8, 2019 | A local privilege escalation vulnerability exists in the install helper tool of the Mac OS X version of Pixar Renderman,... |
| CVE-2018-17419 | HIGH | 7.5 | 1.8% | Mar 7, 2019 | An issue was discovered in setTA in scan_rr.go in the Miek Gieben DNS library before 1.0.10 for Go. A dns.ParseZone() pa... |
| CVE-2018-18816 | HIGH | 8 | 1.3% | Mar 7, 2019 | The repository component of TIBCO Software Inc.'s TIBCO JasperReports Server, TIBCO JasperReports Server Community Editi... |
| CVE-2018-18808 | HIGH | 8.8 | 1.7% | Mar 7, 2019 | The domain management component of TIBCO Software Inc.'s TIBCO JasperReports Server, TIBCO JasperReports Server Communit... |
| CVE-2018-1875 | HIGH | 7.4 | 1.0% | Mar 5, 2019 | IBM InfoSphere Information Governance Catalog 11.3, 11.5, and 11.7 could allow a remote attacker to conduct phishing att... |
| CVE-2018-19636 | HIGH | 7.3 | 0.3% | Mar 5, 2019 | Supportutils, before version 3.1-5.7.1, when run with command line argument -A searched the file system for a ndspath bi... |
| CVE-2018-15380 | HIGH | 8.8 | 1.1% | Feb 20, 2019 | A vulnerability in the cluster service manager of Cisco HyperFlex Software could allow an unauthenticated, adjacent atta... |
| CVE-2018-20026 | HIGH | 7.5 | 3.0% | Feb 19, 2019 | Improper Communication Address Filtering exists in CODESYS V3 products versions prior V3.5.14.0. |
| CVE-2018-1727 | HIGH | 7.1 | 2.5% | Feb 15, 2019 | IBM InfoSphere Information Server 9.1, 11.3, 11.5, and 11.7 is vulnerable to a XML External Entity Injection (XXE) attac... |
| CVE-2018-1701 | HIGH | 8.5 | 1.2% | Feb 15, 2019 | IBM InfoSphere Information Server 11.7 could allow an authenciated user under specialized conditions to inject commands ... |
| CVE-2018-15781 | HIGH | 7.9 | 0.8% | Feb 13, 2019 | The Dell Wyse Password Encoder in ThinLinux2 versions prior to 2.1.0.01 contain a Hard-coded Cryptographic Key vulnerabi... |
| CVE-2018-20781 | HIGH | 7.8 | 1.5% | Feb 12, 2019 | In pam/gkr-pam-module.c in GNOME Keyring before 3.27.2, the user's password is kept in a session-child process spawned f... |
| CVE-2018-3980 | HIGH | 7.8 | 1.5% | Feb 6, 2019 | An exploitable out-of-bounds write exists in the TIFF-parsing functionality of Canvas Draw version 5.0.0. A specially cr... |
| CVE-2018-3976 | HIGH | 7.8 | 1.8% | Feb 6, 2019 | An exploitable out-of-bounds write exists in the CALS Raster file format-parsing functionality of Canvas Draw version 5.... |
| CVE-2018-3973 | HIGH | 7.8 | 1.9% | Feb 6, 2019 | An exploitable out of bounds write exists in the CAL parsing functionality of Canvas Draw version 5.0.0. A specially cra... |
Check if your code is affected by 2018 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now