2018 CVE Vulnerabilities

17,817 CVEs published in 2018.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2018-17956HIGH7.8In yast2-samba-provision up to and including version 1.0.1 the password for samba shares was provided on the command lin...
CVE-2018-12191HIGH7.6Bounds check in Kernel subsystem in Intel CSME before version 11.8.60, 11.11.60, 11.22.60 or 12.0.20, or Intel(R) Server...
CVE-2018-0389HIGH7.5A vulnerability in the implementation of Session Initiation Protocol (SIP) processing in Cisco Small Business SPA514G IP...
CVE-2018-17937HIGH8.8gpsd versions 2.90 to 3.17 and microjson versions 1.0 to 1.3, an open source project, allow a stack-based buffer overflo...
CVE-2018-1998HIGH8.8IBM WebSphere MQ 8.0.0.0 through 9.1.1 could allow a local user to inject code that could be executed with root privileg...
CVE-2018-1980HIGH8.4IBM DB2 for Linux, UNIX and Windows (includes DB2 Connect Server) 9.7, 10.1, 10.5, and 11.1 is vulnerable to a buffer ov...
CVE-2018-1978HIGH8.4IBM DB2 for Linux, UNIX and Windows (includes DB2 Connect Server) 9.7, 10.1, 10.5, and 11.1 is vulnerable to a buffer ov...
CVE-2018-1974HIGH7.5IBM WebSphere 8.0.0.0 through 9.1.1 could allow an authenticated attacker to escalate their privileges when using multip...
CVE-2018-1923HIGH8.4IBM DB2 for Linux, UNIX and Windows (includes DB2 Connect Server) 9.7, 10.1, 10.5, and 11.1 is affected by buffer overfl...
CVE-2018-1922HIGH8.4IBM DB2 for Linux, UNIX and Windows (includes DB2 Connect Server) 9.7, 10.1, 10.5, and 11.1 is affected by buffer overfl...
CVE-2018-4054HIGH7.8A local privilege escalation vulnerability exists in the install helper tool of the Mac OS X version of Pixar Renderman,...
CVE-2018-17419HIGH7.5An issue was discovered in setTA in scan_rr.go in the Miek Gieben DNS library before 1.0.10 for Go. A dns.ParseZone() pa...
CVE-2018-18816HIGH8The repository component of TIBCO Software Inc.'s TIBCO JasperReports Server, TIBCO JasperReports Server Community Editi...
CVE-2018-18808HIGH8.8The domain management component of TIBCO Software Inc.'s TIBCO JasperReports Server, TIBCO JasperReports Server Communit...
CVE-2018-1875HIGH7.4IBM InfoSphere Information Governance Catalog 11.3, 11.5, and 11.7 could allow a remote attacker to conduct phishing att...
CVE-2018-19636HIGH7.3Supportutils, before version 3.1-5.7.1, when run with command line argument -A searched the file system for a ndspath bi...
CVE-2018-15380HIGH8.8A vulnerability in the cluster service manager of Cisco HyperFlex Software could allow an unauthenticated, adjacent atta...
CVE-2018-20026HIGH7.5Improper Communication Address Filtering exists in CODESYS V3 products versions prior V3.5.14.0.
CVE-2018-1727HIGH7.1IBM InfoSphere Information Server 9.1, 11.3, 11.5, and 11.7 is vulnerable to a XML External Entity Injection (XXE) attac...
CVE-2018-1701HIGH8.5IBM InfoSphere Information Server 11.7 could allow an authenciated user under specialized conditions to inject commands ...
CVE-2018-15781HIGH7.9The Dell Wyse Password Encoder in ThinLinux2 versions prior to 2.1.0.01 contain a Hard-coded Cryptographic Key vulnerabi...
CVE-2018-20781HIGH7.8In pam/gkr-pam-module.c in GNOME Keyring before 3.27.2, the user's password is kept in a session-child process spawned f...
CVE-2018-3980HIGH7.8An exploitable out-of-bounds write exists in the TIFF-parsing functionality of Canvas Draw version 5.0.0. A specially cr...
CVE-2018-3976HIGH7.8An exploitable out-of-bounds write exists in the CALS Raster file format-parsing functionality of Canvas Draw version 5....
CVE-2018-3973HIGH7.8An exploitable out of bounds write exists in the CAL parsing functionality of Canvas Draw version 5.0.0. A specially cra...

Check if your code is affected by 2018 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now