2018 CVE Vulnerabilities
17,817 CVEs published in 2018.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2018-14771 | — | — | 3.0% | Sep 5, 2018 | VIVOTEK FD8177 devices before XXXXXX-VVTK-xx06a allow remote attackers to execute arbitrary code (issue 2 of 2) via even... |
| CVE-2018-14770 | — | — | 3.0% | Sep 5, 2018 | VIVOTEK FD8177 devices before XXXXXX-VVTK-xx06a allow remote attackers to execute arbitrary code (issue 1 of 2) via the ... |
| CVE-2018-14769 | — | — | 0.5% | Sep 5, 2018 | VIVOTEK FD8177 devices before XXXXXX-VVTK-xx06a allow CSRF. |
| CVE-2018-16546 | — | — | 1.0% | Sep 5, 2018 | Amcrest networked devices use the same hardcoded SSL private key across different customers' installations, which allows... |
| CVE-2018-16437 | — | — | 1.6% | Sep 5, 2018 | Gxlcms 2.0 before bug fix 20180915 has Directory Traversal exploitable by an administrator. |
| CVE-2018-16436 | — | — | 1.5% | Sep 5, 2018 | Gxlcms 2.0 before bug fix 20180915 has SQL Injection exploitable by an administrator. |
| CVE-2018-16545 | — | — | 1.7% | Sep 5, 2018 | Kaizen Asset Manager (Enterprise Edition) and Training Manager (Enterprise Edition) allow a remote attacker to achieve a... |
| CVE-2018-16543 | — | — | 1.3% | Sep 5, 2018 | In Artifex Ghostscript before 9.24, gssetresolution and gsgetresolution allow attackers to have an unspecified impact. |
| CVE-2018-16542 | — | — | 1.9% | Sep 5, 2018 | In Artifex Ghostscript before 9.24, attackers able to supply crafted PostScript files could use insufficient interpreter... |
| CVE-2018-16541 | — | — | 1.4% | Sep 5, 2018 | In Artifex Ghostscript before 9.24, attackers able to supply crafted PostScript files could use incorrect free logic in ... |
| CVE-2018-16540 | — | — | 1.6% | Sep 5, 2018 | In Artifex Ghostscript before 9.24, attackers able to supply crafted PostScript files to the builtin PDF14 converter cou... |
| CVE-2018-16539 | — | — | 1.4% | Sep 5, 2018 | In Artifex Ghostscript before 9.24, attackers able to supply crafted PostScript files could use incorrect access checkin... |
| CVE-2018-16521 | — | — | 1.9% | Sep 5, 2018 | An XML External Entity (XXE) vulnerability exists in HTML Form Entry 3.7.0, as distributed in OpenMRS Reference Applicat... |
| CVE-2018-16518 | — | — | 3.2% | Sep 5, 2018 | A directory traversal vulnerability with remote code execution in Prim'X Zed! FREE through 1.0 build 186 and Zed! Limite... |
| CVE-2018-16516 | — | — | 1.2% | Sep 5, 2018 | helpers.py in Flask-Admin 1.5.2 has Reflected XSS via a crafted URL. |
| CVE-2018-9194 | — | — | 1.1% | Sep 5, 2018 | A plaintext recovery of encrypted messages or a Man-in-the-middle (MiTM) attack on RSA PKCS #1 v1.5 encryption may be po... |
| CVE-2018-9192 | — | — | 1.1% | Sep 5, 2018 | A plaintext recovery of encrypted messages or a Man-in-the-middle (MiTM) attack on RSA PKCS #1 v1.5 encryption may be po... |
| CVE-2018-16513 | — | — | 1.5% | Sep 5, 2018 | In Artifex Ghostscript before 9.24, attackers able to supply crafted PostScript files could use a type confusion in the ... |
| CVE-2018-1353 | — | — | 0.7% | Sep 5, 2018 | An information disclosure vulnerability in Fortinet FortiManager 6.0.1 and below versions allows a standard user with ad... |
| CVE-2018-13259 | — | — | 2.7% | Sep 5, 2018 | An issue was discovered in zsh before 5.6. Shebang lines exceeding 64 characters were truncated, potentially leading to ... |
| CVE-2018-0502 | — | — | 2.5% | Sep 5, 2018 | An issue was discovered in zsh before 5.6. The beginning of a #! script file was mishandled, potentially leading to an e... |
| CVE-2018-16511 | — | — | 1.9% | Sep 5, 2018 | An issue was discovered in Artifex Ghostscript before 9.24. A type confusion in "ztype" could be used by remote attacker... |
| CVE-2018-16510 | — | — | 1.7% | Sep 5, 2018 | An issue was discovered in Artifex Ghostscript before 9.24. Incorrect exec stack handling in the "CS" and "SC" PDF primi... |
| CVE-2018-16509 | — | — | 92.5% | Sep 5, 2018 | An issue was discovered in Artifex Ghostscript before 9.24. Incorrect "restoration of privilege" checking during handlin... |
| CVE-2018-1000672 | — | — | — | Sep 5, 2018 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2018-16391, CVE-2018-16392, CVE-2018-16393, CVE-2018... |
Check if your code is affected by 2018 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now