2018 CVE Vulnerabilities

17,817 CVEs published in 2018.

CVE IDSeverityCVSSDescription
CVE-2018-8608A cross site scripting vulnerability exists when Microsoft Dynamics 365 (on-premises) version 8 does not properly saniti...
CVE-2018-8607A cross site scripting vulnerability exists when Microsoft Dynamics 365 (on-premises) version 8 does not properly saniti...
CVE-2018-8606A cross site scripting vulnerability exists when Microsoft Dynamics 365 (on-premises) version 8 does not properly saniti...
CVE-2018-8605A cross site scripting vulnerability exists when Microsoft Dynamics 365 (on-premises) version 8 does not properly saniti...
CVE-2018-8602A Cross-site Scripting (XSS) vulnerability exists when Team Foundation Server does not properly sanitize user provided i...
CVE-2018-8600A Cross-site Scripting (XSS) vulnerability exists when Azure App Services on Azure Stack does not properly sanitize user...
CVE-2018-8592An elevation of privilege vulnerability exists in Windows 10 version 1809 when installed from physical media (USB, DVD, ...
CVE-2018-8589HIGH7.8An elevation of privilege vulnerability exists when Windows improperly handles calls to Win32k.sys, aka "Windows Win32k ...
CVE-2018-8588A remote code execution vulnerability exists in the way that the Chakra scripting engine handles objects in memory in Mi...
CVE-2018-8584An elevation of privilege vulnerability exists when Windows improperly handles calls to Advanced Local Procedure Call (A...
CVE-2018-8582A remote code execution vulnerability exists in the way that Microsoft Outlook parses specially modified rule export fil...
CVE-2018-8581HIGH7.4An elevation of privilege vulnerability exists in Microsoft Exchange Server, aka "Microsoft Exchange Server Elevation of...
CVE-2018-8579An information disclosure vulnerability exists when attaching files to Outlook messages, aka "Microsoft Outlook Informat...
CVE-2018-8578An information disclosure vulnerability exists when Microsoft SharePoint Server improperly discloses its folder structur...
CVE-2018-8577A remote code execution vulnerability exists in Microsoft Excel software when the software fails to properly handle obje...
CVE-2018-8576A remote code execution vulnerability exists in Microsoft Outlook software when it fails to properly handle objects in m...
CVE-2018-8575A remote code execution vulnerability exists in Microsoft Project software when it fails to properly handle objects in m...
CVE-2018-8574A remote code execution vulnerability exists in Microsoft Excel software when the software fails to properly handle obje...
CVE-2018-8573A remote code execution vulnerability exists in Microsoft Word software when it fails to properly handle objects in memo...
CVE-2018-8572An elevation of privilege vulnerability exists when Microsoft SharePoint Server does not properly sanitize a specially c...
CVE-2018-8570A remote code execution vulnerability exists when Internet Explorer improperly accesses objects in memory, aka "Internet...
CVE-2018-8568MEDIUM5.4An elevation of privilege vulnerability exists when Microsoft SharePoint Server does not properly sanitize a specially c...
CVE-2018-8567An elevation of privilege vulnerability exists when Microsoft Edge does not properly enforce cross-domain policies, whic...
CVE-2018-8566A security feature bypass vulnerability exists when Windows improperly suspends BitLocker Device Encryption, aka "BitLoc...
CVE-2018-8565An information disclosure vulnerability exists when the win32k component improperly provides kernel information, aka "Wi...

Check if your code is affected by 2018 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now