2018 CVE Vulnerabilities
17,817 CVEs published in 2018.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2018-9436 | — | — | 1.7% | Nov 6, 2018 | In bnep_data_ind of bnep_main.cc, there is a possible out of bounds read due to a missing bounds check. This could lead ... |
| CVE-2018-9427 | — | — | 1.8% | Nov 6, 2018 | In CopyToOMX of OMXNodeInstance.cpp there is a possible out-of-bounds write due to an incorrect bounds check. This could... |
| CVE-2018-9422 | — | — | 0.2% | Nov 6, 2018 | In get_futex_key of futex.c, there is a use-after-free due to improper locking. This could lead to local escalation of p... |
| CVE-2018-9415 | — | — | 0.3% | Nov 6, 2018 | In driver_override_store and driver_override_show of bus.c, there is a possible double free due to improper locking. Thi... |
| CVE-2018-9385 | — | — | 0.3% | Nov 6, 2018 | In driver_override_store of bus.c, there is a possible out of bounds write due to an incorrect bounds check. This could ... |
| CVE-2018-9363 | HIGH | 8.4 | 0.4% | Nov 6, 2018 | In the hidp_process_report in bluetooth, there is an integer overflow. This could lead to an out of bounds write with no... |
| CVE-2018-9362 | — | — | 1.6% | Nov 6, 2018 | In processMessagePart of InboundSmsHandler.java, there is a possible remote denial of service due to improper input vali... |
| CVE-2018-9361 | — | — | 1.7% | Nov 6, 2018 | In process_l2cap_cmd of l2c_main.cc, there is a possible out of bounds read due to a missing bounds check. This could le... |
| CVE-2018-9360 | — | — | 1.7% | Nov 6, 2018 | In process_l2cap_cmd of l2c_main.cc, there is a possible out of bounds read due to a missing bounds check. This could le... |
| CVE-2018-9359 | — | — | 1.7% | Nov 6, 2018 | In process_l2cap_cmd of l2c_main.cc, there is a possible out of bounds read due to a missing bounds check. This could le... |
| CVE-2018-9358 | — | — | 1.7% | Nov 6, 2018 | In gatts_process_attribute_req of gatt_sc.cc, there is a possible read of uninitialized data due to a missing bounds che... |
| CVE-2018-9357 | — | — | 0.2% | Nov 6, 2018 | In BNEP_Write of bnep_api.cc, there is a possible out of bounds write due to an incorrect bounds check. This could lead ... |
| CVE-2018-9356 | — | — | 3.2% | Nov 6, 2018 | In bnep_data_ind of bnep_main.c, there is a possible remote code execution due to a double free. This could lead to remo... |
| CVE-2018-9355 | — | — | 3.0% | Nov 6, 2018 | In bta_dm_sdp_result of bta_dm_act.cc, there is a possible out of bounds stack write due to a missing bounds check. This... |
| CVE-2018-1694 | MEDIUM | 5.9 | 1.8% | Nov 6, 2018 | IBM Jazz applications (IBM Rational Collaborative Lifecycle Management 5.0 through 5.02 and 6.0 through 6.0.6, IBM Ratio... |
| CVE-2018-1606 | MEDIUM | 4.3 | 1.0% | Nov 6, 2018 | IBM Jazz based applications (IBM Rational Collaborative Lifecycle Management 5.0 through 5.02 and 6.0 through 6.0.6, IBM... |
| CVE-2018-16986 | — | — | 3.0% | Nov 6, 2018 | Texas Instruments BLE-STACK v2.2.1 for SimpleLink CC2640 and CC2650 devices allows remote attackers to execute arbitrary... |
| CVE-2018-18963 | — | — | 1.5% | Nov 6, 2018 | Busca.aspx.cs in Degrau Publicidade e Internet Plataforma de E-commerce allows SQL Injection via the busca/ URI. |
| CVE-2018-18980 | — | — | 25.0% | Nov 6, 2018 | An XML External Entity injection (XXE) vulnerability exists in Zoho ManageEngine Network Configuration Manager and OpMan... |
| CVE-2018-18966 | — | — | 1.0% | Nov 6, 2018 | osCommerce 2.3.4.1 has an incomplete '.htaccess' for blacklist filtering in the "product" page. The .htaccess file in ca... |
| CVE-2018-18965 | — | — | 1.0% | Nov 6, 2018 | osCommerce 2.3.4.1 has an incomplete '.htaccess' for blacklist filtering in the "product" page. The .htaccess file in ca... |
| CVE-2018-18964 | — | — | 1.0% | Nov 6, 2018 | osCommerce 2.3.4.1 has an incomplete '.htaccess' for blacklist filtering in the "product" page. The .htaccess file in ca... |
| CVE-2018-17913 | — | — | 1.6% | Nov 5, 2018 | A type confusion vulnerability exists when processing project files in Omron CX-Supervisor Versions 3.4.1.0 and prior, w... |
| CVE-2018-17909 | — | — | 1.6% | Nov 5, 2018 | When processing project files in Omron CX-Supervisor Versions 3.4.1.0 and prior, the application fails to check if it is... |
| CVE-2018-17907 | — | — | 0.9% | Nov 5, 2018 | When processing project files in Omron CX-Supervisor Versions 3.4.1.0 and prior and tampering with the value of an offse... |
Check if your code is affected by 2018 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now