2018 CVE Vulnerabilities
17,817 CVEs published in 2018.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2018-16978 | — | — | 0.9% | Sep 12, 2018 | Monstra CMS V3.0.4 has XSS when ones tries to register an account with a crafted password parameter to users/registratio... |
| CVE-2018-16977 | — | — | 1.2% | Sep 12, 2018 | Monstra CMS V3.0.4 has an information leakage risk (e.g., PATH, DOCUMENT_ROOT, and SERVER_ADMIN) in libraries/Gelato/Err... |
| CVE-2018-16976 | — | — | 1.2% | Sep 12, 2018 | Gitolite before 3.6.9 does not (in certain configurations involving @all or a regex) properly restrict access to a Git r... |
| CVE-2018-16975 | — | — | 3.7% | Sep 12, 2018 | An issue was discovered in Elefant CMS before 2.0.7. There is a PHP Code Execution Vulnerability in /designer/add/styles... |
| CVE-2018-16974 | — | — | 3.6% | Sep 12, 2018 | An issue was discovered in Elefant CMS before 2.0.7. There is a PHP Code Execution Vulnerability in apps/filemanager/upl... |
| CVE-2018-16971 | — | — | 0.6% | Sep 12, 2018 | Wisetail Learning Ecosystem (LE) through v4.11.6 allows insecure direct object reference (IDOR) attacks to access non-pu... |
| CVE-2018-16970 | — | — | 0.7% | Sep 12, 2018 | Wisetail Learning Ecosystem (LE) through v4.11.6 allows insecure direct object reference (IDOR) attacks to download non-... |
| CVE-2018-16962 | — | — | 0.5% | Sep 12, 2018 | Webroot SecureAnywhere before 9.0.8.34 on macOS mishandles access to the driver by a process that lacks root privileges. |
| CVE-2018-3686 | — | — | 0.4% | Sep 12, 2018 | Code injection vulnerability in INTEL-SA-00086 Detection Tool before version 1.2.7.0 may allow a privileged user to pote... |
| CVE-2018-3679 | — | — | 1.2% | Sep 12, 2018 | Escalation of privilege in Reference UI in Intel Data Center Manager SDK 5.0 and before may allow an unauthorized remote... |
| CVE-2018-3669 | — | — | 1.1% | Sep 12, 2018 | A STOP error (BSoD) in the ibtfltcoex.sys driver for Intel Centrino Wireless N and Intel Centrino Advanced N adapters ma... |
| CVE-2018-3659 | — | — | 0.4% | Sep 12, 2018 | A vulnerability in Intel PTT module in Intel CSME firmware before version 12.0.5 and Intel TXE firmware before version 4... |
| CVE-2018-3655 | — | — | 0.4% | Sep 12, 2018 | A vulnerability in a subsystem in Intel CSME before version 11.21.55, Intel Server Platform Services before version 4.0 ... |
| CVE-2018-3643 | — | — | 0.5% | Sep 12, 2018 | A vulnerability in Power Management Controller firmware in systems using specific Intel(R) Converged Security and Manage... |
| CVE-2018-12176 | — | — | 0.4% | Sep 12, 2018 | Improper input validation in firmware for Intel NUC Kits may allow a privileged user to potentially execute arbitrary co... |
| CVE-2018-12175 | — | — | 0.3% | Sep 12, 2018 | Default install directory permissions in Intel Distribution for Python (IDP) version 2018 may allow an unprivileged user... |
| CVE-2018-12171 | — | — | 2.1% | Sep 12, 2018 | Privilege escalation in Intel Baseboard Management Controller (BMC) firmware before version 1.43.91f76955 may allow an u... |
| CVE-2018-12168 | — | — | 0.3% | Sep 12, 2018 | Privilege escalation in file permissions in Intel Computing Improvement Program before version 2.2.0.03942 may allow an ... |
| CVE-2018-12163 | — | — | 0.5% | Sep 12, 2018 | A DLL injection vulnerability in the Intel IoT Developers Kit 4.0 installer may allow an authenticated user to potential... |
| CVE-2018-12162 | — | — | 0.3% | Sep 12, 2018 | Directory permissions in the Intel OpenVINO Toolkit for Windows before version 2018.1.265 may allow an authenticated use... |
| CVE-2018-12160 | — | — | 0.4% | Sep 12, 2018 | DLL injection vulnerability in software installer for Intel Data Center Migration Center Software v3.1 and before may al... |
| CVE-2018-12151 | — | — | 0.3% | Sep 12, 2018 | Buffer overflow in installer for Intel Extreme Tuning Utility before 6.4.1.21 may allow an authenticated user to potenti... |
| CVE-2018-12150 | — | — | 0.4% | Sep 12, 2018 | Escalation of privilege in Installer for Intel Extreme Tuning Utility before 6.4.1.21 may allow an authenticated user to... |
| CVE-2018-12149 | — | — | 0.3% | Sep 12, 2018 | Buffer overflow in input handling in Intel Extreme Tuning Utility before 6.4.1.21 may allow an authenticated user to pot... |
| CVE-2018-12148 | — | — | 0.3% | Sep 12, 2018 | Privilege escalation in file permissions in Intel Driver and Support Assistant before 3.5.0.1 may allow an authenticated... |
Check if your code is affected by 2018 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now