2018 CVE Vulnerabilities

17,817 CVEs published in 2018.

CVE IDSeverityCVSSDescription
CVE-2018-9436In bnep_data_ind of bnep_main.cc, there is a possible out of bounds read due to a missing bounds check. This could lead ...
CVE-2018-9427In CopyToOMX of OMXNodeInstance.cpp there is a possible out-of-bounds write due to an incorrect bounds check. This could...
CVE-2018-9422In get_futex_key of futex.c, there is a use-after-free due to improper locking. This could lead to local escalation of p...
CVE-2018-9415In driver_override_store and driver_override_show of bus.c, there is a possible double free due to improper locking. Thi...
CVE-2018-9385In driver_override_store of bus.c, there is a possible out of bounds write due to an incorrect bounds check. This could ...
CVE-2018-9363HIGH8.4In the hidp_process_report in bluetooth, there is an integer overflow. This could lead to an out of bounds write with no...
CVE-2018-9362In processMessagePart of InboundSmsHandler.java, there is a possible remote denial of service due to improper input vali...
CVE-2018-9361In process_l2cap_cmd of l2c_main.cc, there is a possible out of bounds read due to a missing bounds check. This could le...
CVE-2018-9360In process_l2cap_cmd of l2c_main.cc, there is a possible out of bounds read due to a missing bounds check. This could le...
CVE-2018-9359In process_l2cap_cmd of l2c_main.cc, there is a possible out of bounds read due to a missing bounds check. This could le...
CVE-2018-9358In gatts_process_attribute_req of gatt_sc.cc, there is a possible read of uninitialized data due to a missing bounds che...
CVE-2018-9357In BNEP_Write of bnep_api.cc, there is a possible out of bounds write due to an incorrect bounds check. This could lead ...
CVE-2018-9356In bnep_data_ind of bnep_main.c, there is a possible remote code execution due to a double free. This could lead to remo...
CVE-2018-9355In bta_dm_sdp_result of bta_dm_act.cc, there is a possible out of bounds stack write due to a missing bounds check. This...
CVE-2018-1694MEDIUM5.9IBM Jazz applications (IBM Rational Collaborative Lifecycle Management 5.0 through 5.02 and 6.0 through 6.0.6, IBM Ratio...
CVE-2018-1606MEDIUM4.3IBM Jazz based applications (IBM Rational Collaborative Lifecycle Management 5.0 through 5.02 and 6.0 through 6.0.6, IBM...
CVE-2018-16986Texas Instruments BLE-STACK v2.2.1 for SimpleLink CC2640 and CC2650 devices allows remote attackers to execute arbitrary...
CVE-2018-18963Busca.aspx.cs in Degrau Publicidade e Internet Plataforma de E-commerce allows SQL Injection via the busca/ URI.
CVE-2018-18980An XML External Entity injection (XXE) vulnerability exists in Zoho ManageEngine Network Configuration Manager and OpMan...
CVE-2018-18966osCommerce 2.3.4.1 has an incomplete '.htaccess' for blacklist filtering in the "product" page. The .htaccess file in ca...
CVE-2018-18965osCommerce 2.3.4.1 has an incomplete '.htaccess' for blacklist filtering in the "product" page. The .htaccess file in ca...
CVE-2018-18964osCommerce 2.3.4.1 has an incomplete '.htaccess' for blacklist filtering in the "product" page. The .htaccess file in ca...
CVE-2018-17913A type confusion vulnerability exists when processing project files in Omron CX-Supervisor Versions 3.4.1.0 and prior, w...
CVE-2018-17909When processing project files in Omron CX-Supervisor Versions 3.4.1.0 and prior, the application fails to check if it is...
CVE-2018-17907When processing project files in Omron CX-Supervisor Versions 3.4.1.0 and prior and tampering with the value of an offse...

Check if your code is affected by 2018 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now