2018 CVE Vulnerabilities
17,817 CVEs published in 2018.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2018-16666 | — | — | 0.3% | Sep 7, 2018 | An issue was discovered in Contiki-NG through 4.1. There is a stack-based buffer overflow in next_string in os/storage/a... |
| CVE-2018-16665 | — | — | 0.3% | Sep 7, 2018 | An issue was discovered in Contiki-NG through 4.1. There is a buffer overflow while parsing AQL in lvm_shift_for_operato... |
| CVE-2018-16664 | — | — | 0.3% | Sep 7, 2018 | An issue was discovered in Contiki-NG through 4.1. There is a buffer overflow in lvm_set_type in os/storage/antelope/lvm... |
| CVE-2018-16663 | — | — | 0.3% | Sep 7, 2018 | An issue was discovered in Contiki-NG through 4.1. There is a stack-based buffer overflow in parse_relations in os/stora... |
| CVE-2018-16658 | — | — | 0.6% | Sep 7, 2018 | An issue was discovered in the Linux kernel before 4.18.6. An information leak in cdrom_ioctl_drive_status in drivers/cd... |
| CVE-2018-16657 | — | — | 3.6% | Sep 7, 2018 | In Kamailio before 5.0.7 and 5.1.x before 5.1.4, a crafted SIP message with an invalid Via header causes a segmentation ... |
| CVE-2018-0663 | — | — | 1.6% | Sep 7, 2018 | Multiple I-O DATA network camera products (TS-WRLP firmware Ver.1.09.04 and earlier, TS-WRLA firmware Ver.1.09.04 and ea... |
| CVE-2018-0662 | — | — | 0.4% | Sep 7, 2018 | Multiple I-O DATA network camera products (TS-WRLP firmware Ver.1.09.04 and earlier, TS-WRLA firmware Ver.1.09.04 and ea... |
| CVE-2018-0661 | — | — | 0.6% | Sep 7, 2018 | Multiple I-O DATA network camera products (TS-WRLP firmware Ver.1.09.04 and earlier, TS-WRLA firmware Ver.1.09.04 and ea... |
| CVE-2018-0660 | — | — | 1.2% | Sep 7, 2018 | Directory traversal vulnerability in ver.2.8.4.0 and earlier and ver.3.3.0.0 and earlier allows an attacker to create ar... |
| CVE-2018-0659 | — | — | 1.4% | Sep 7, 2018 | Directory traversal vulnerability in ver.2.8.4.0 and earlier and ver.3.3.0.0 and earlier allows an attacker to create or... |
| CVE-2018-0658 | — | — | 1.0% | Sep 7, 2018 | Input validation issue in EC-CUBE Payment Module (2.12) version 3.5.23 and earlier, EC-CUBE Payment Module (2.11) versio... |
| CVE-2018-0657 | — | — | 0.5% | Sep 7, 2018 | Cross-site scripting vulnerability in EC-CUBE Payment Module and GMO-PG Payment Module (PG Multi-Payment Service) for EC... |
| CVE-2018-0655 | — | — | 0.7% | Sep 7, 2018 | Cross-site scripting vulnerability in GROWI v.3.1.11 and earlier allows remote authenticated attackers to inject arbitra... |
| CVE-2018-0654 | — | — | 0.9% | Sep 7, 2018 | Cross-site scripting vulnerability in GROWI v.3.1.11 and earlier allows remote attackers to inject arbitrary web script ... |
| CVE-2018-0653 | — | — | 0.9% | Sep 7, 2018 | Cross-site scripting vulnerability in GROWI v.3.1.11 and earlier allows remote attackers to inject arbitrary web script ... |
| CVE-2018-0652 | — | — | 0.7% | Sep 7, 2018 | Cross-site scripting vulnerability in GROWI v.3.1.11 and earlier allows remote authenticated attackers to inject arbitra... |
| CVE-2018-0650 | — | — | 0.6% | Sep 7, 2018 | The LINE MUSIC for Android version 3.1.0 to versions prior to 3.6.5 does not verify X.509 certificates from SSL servers,... |
| CVE-2018-0649 | — | — | 1.1% | Sep 7, 2018 | Untrusted search path vulnerability in the installers of multiple Canon IT Solutions Inc. software programs (ESET Smart ... |
| CVE-2018-0648 | — | — | 0.8% | Sep 7, 2018 | Untrusted search path vulnerability in installer of ChatWork Desktop App for Windows 2.3.0 and earlier allows an attacke... |
| CVE-2018-0647 | — | — | 0.6% | Sep 7, 2018 | Cross-site request forgery (CSRF) vulnerability in WL-330NUL Firmware version prior to 3.0.0.46 allows remote attackers ... |
| CVE-2018-0645 | — | — | 2.4% | Sep 7, 2018 | MTAppjQuery 1.8.1 and earlier allows remote PHP code execution via unspecified vectors. |
| CVE-2018-0644 | — | — | 1.0% | Sep 7, 2018 | Buffer overflow in Ubuntu14.04 ORCA (Online Receipt Computer Advantage) 4.8.0 (panda-client2) 1:1.4.9+p41-u4jma1 and ear... |
| CVE-2018-0643 | — | — | 0.5% | Sep 7, 2018 | Ubuntu14.04 ORCA (Online Receipt Computer Advantage) 4.8.0 (panda-server) 1:1.4.9+p41-u4jma1 and earlier allows attacker... |
| CVE-2018-0642 | — | — | 1.0% | Sep 7, 2018 | Cross-site scripting vulnerability in FV Flowplayer Video Player 6.1.2 to 6.6.4 allows remote attackers to inject arbitr... |
Check if your code is affected by 2018 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now