2018 CVE Vulnerabilities

17,817 CVEs published in 2018.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2018-14771VIVOTEK FD8177 devices before XXXXXX-VVTK-xx06a allow remote attackers to execute arbitrary code (issue 2 of 2) via even...
CVE-2018-14770VIVOTEK FD8177 devices before XXXXXX-VVTK-xx06a allow remote attackers to execute arbitrary code (issue 1 of 2) via the ...
CVE-2018-14769VIVOTEK FD8177 devices before XXXXXX-VVTK-xx06a allow CSRF.
CVE-2018-16546Amcrest networked devices use the same hardcoded SSL private key across different customers' installations, which allows...
CVE-2018-16437Gxlcms 2.0 before bug fix 20180915 has Directory Traversal exploitable by an administrator.
CVE-2018-16436Gxlcms 2.0 before bug fix 20180915 has SQL Injection exploitable by an administrator.
CVE-2018-16545Kaizen Asset Manager (Enterprise Edition) and Training Manager (Enterprise Edition) allow a remote attacker to achieve a...
CVE-2018-16543In Artifex Ghostscript before 9.24, gssetresolution and gsgetresolution allow attackers to have an unspecified impact.
CVE-2018-16542In Artifex Ghostscript before 9.24, attackers able to supply crafted PostScript files could use insufficient interpreter...
CVE-2018-16541In Artifex Ghostscript before 9.24, attackers able to supply crafted PostScript files could use incorrect free logic in ...
CVE-2018-16540In Artifex Ghostscript before 9.24, attackers able to supply crafted PostScript files to the builtin PDF14 converter cou...
CVE-2018-16539In Artifex Ghostscript before 9.24, attackers able to supply crafted PostScript files could use incorrect access checkin...
CVE-2018-16521An XML External Entity (XXE) vulnerability exists in HTML Form Entry 3.7.0, as distributed in OpenMRS Reference Applicat...
CVE-2018-16518A directory traversal vulnerability with remote code execution in Prim'X Zed! FREE through 1.0 build 186 and Zed! Limite...
CVE-2018-16516helpers.py in Flask-Admin 1.5.2 has Reflected XSS via a crafted URL.
CVE-2018-9194A plaintext recovery of encrypted messages or a Man-in-the-middle (MiTM) attack on RSA PKCS #1 v1.5 encryption may be po...
CVE-2018-9192A plaintext recovery of encrypted messages or a Man-in-the-middle (MiTM) attack on RSA PKCS #1 v1.5 encryption may be po...
CVE-2018-16513In Artifex Ghostscript before 9.24, attackers able to supply crafted PostScript files could use a type confusion in the ...
CVE-2018-1353An information disclosure vulnerability in Fortinet FortiManager 6.0.1 and below versions allows a standard user with ad...
CVE-2018-13259An issue was discovered in zsh before 5.6. Shebang lines exceeding 64 characters were truncated, potentially leading to ...
CVE-2018-0502An issue was discovered in zsh before 5.6. The beginning of a #! script file was mishandled, potentially leading to an e...
CVE-2018-16511An issue was discovered in Artifex Ghostscript before 9.24. A type confusion in "ztype" could be used by remote attacker...
CVE-2018-16510An issue was discovered in Artifex Ghostscript before 9.24. Incorrect exec stack handling in the "CS" and "SC" PDF primi...
CVE-2018-16509An issue was discovered in Artifex Ghostscript before 9.24. Incorrect "restoration of privilege" checking during handlin...
CVE-2018-1000672Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2018-16391, CVE-2018-16392, CVE-2018-16393, CVE-2018...

Check if your code is affected by 2018 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now