2018 CVE Vulnerabilities
17,817 CVEs published in 2018.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2018-14079 | — | — | 1.4% | Aug 20, 2018 | Wi2be SMART HP WMT R1.2.20_201400922 allows unauthorized remote attackers to obtain sensitive information via /Status/Sy... |
| CVE-2018-14078 | — | — | 2.2% | Aug 20, 2018 | Wi2be SMART HP WMT R1.2.20_201400922 allows unauthorized remote attackers to reset the admin password via the /ConfigWiz... |
| CVE-2018-14077 | — | — | 1.4% | Aug 20, 2018 | Wi2be SMART HP WMT R1.2.20_201400922 allows unauthorized remote attackers to backup the device configuration via a direc... |
| CVE-2018-1000226 | — | — | 12.5% | Aug 20, 2018 | Cobbler version Verified as present in Cobbler versions 2.6.11+, but code inspection suggests at least 2.0.0+ or possibl... |
| CVE-2018-1000225 | — | — | 1.3% | Aug 20, 2018 | Cobbler version Verified as present in Cobbler versions 2.6.11+, but code inspection suggests at least 2.0.0+ or possibl... |
| CVE-2018-1000224 | — | — | 3.8% | Aug 20, 2018 | Godot Engine version All versions prior to 2.1.5, all 3.0 versions prior to 3.0.6. contains a Signed/unsigned comparison... |
| CVE-2018-1000223 | — | — | 2.4% | Aug 20, 2018 | soundtouch version up to and including 2.0.0 contains a Buffer Overflow vulnerability in SoundStretch/WavFile.cpp:WavInF... |
| CVE-2018-1000222 | — | — | 4.2% | Aug 20, 2018 | Libgd version 2.2.5 contains a Double Free Vulnerability vulnerability in gdImageBmpPtr Function that can result in Remo... |
| CVE-2018-1000221 | — | — | 1.4% | Aug 20, 2018 | pkgconf version 1.5.0 to 1.5.2 contains a Buffer Overflow vulnerability in dequote() that can result in dequote() functi... |
| CVE-2018-1000220 | — | — | — | Aug 20, 2018 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2014-5462. Reason: This candidate is a reservation ... |
| CVE-2018-1000219 | — | — | 0.9% | Aug 20, 2018 | OpenEMR version v5_0_1_4 contains a Cross Site Scripting (XSS) vulnerability in The 'scan' parameter in line #41 of inte... |
| CVE-2018-1000218 | — | — | 0.8% | Aug 20, 2018 | OpenEMR version v5_0_1_4 contains a Cross Site Scripting (XSS) vulnerability in The 'file' parameter in line #43 of inte... |
| CVE-2018-1000217 | — | — | 1.8% | Aug 20, 2018 | Dave Gamble cJSON version 1.7.3 and earlier contains a CWE-416: Use After Free vulnerability in cJSON library that can r... |
| CVE-2018-1000216 | — | — | 1.5% | Aug 20, 2018 | Dave Gamble cJSON version 1.7.2 and earlier contains a CWE-415: Double Free vulnerability in cJSON library that can resu... |
| CVE-2018-1000215 | — | — | 1.7% | Aug 20, 2018 | Dave Gamble cJSON version 1.7.6 and earlier contains a CWE-772 vulnerability in cJSON library that can result in Denial ... |
| CVE-2018-1000214 | — | — | — | Aug 20, 2018 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2018-1999024. Reason: This candidate is a reservati... |
| CVE-2018-1000213 | — | — | — | Aug 20, 2018 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2018-1999023. Reason: This candidate is a reservati... |
| CVE-2018-1000212 | — | — | — | Aug 20, 2018 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2018-1999022. Reason: This candidate is a reservati... |
| CVE-2018-1000657 | — | — | 0.5% | Aug 20, 2018 | Rust Programming Language Rust standard library version Commit bfa0e1f58acf1c28d500c34ed258f09ae021893e and later; stabl... |
| CVE-2018-1000656 | — | — | 3.9% | Aug 20, 2018 | The Pallets Project flask version Before 0.12.3 contains a CWE-20: Improper Input Validation vulnerability in flask that... |
| CVE-2018-1000655 | — | — | 0.9% | Aug 20, 2018 | Jsish version 2.4.65 contains a CWE-476: NULL Pointer Dereference vulnerability in Function jsi_ValueCopyMove from jsiVa... |
| CVE-2018-1000654 | — | — | 2.0% | Aug 20, 2018 | GNU Libtasn1-4.13 libtasn1-4.13 version libtasn1-4.13, libtasn1-4.12 contains a DoS, specifically CPU usage will reach 1... |
| CVE-2018-1000653 | — | — | 1.2% | Aug 20, 2018 | zzcms version 8.3 and earlier contains a SQL Injection vulnerability in zt/top.php line 5 that can result in could be at... |
| CVE-2018-1000652 | — | — | 1.9% | Aug 20, 2018 | JabRef version <=4.3.1 contains a XML External Entity (XXE) vulnerability in MsBibImporter XML Parser that can result in... |
| CVE-2018-1000651 | — | — | 1.9% | Aug 20, 2018 | Stroom version <5.4.5 contains a XML External Entity (XXE) vulnerability in XML Parser that can result in disclosure of ... |
Check if your code is affected by 2018 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now