2018 CVE Vulnerabilities
17,817 CVEs published in 2018.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2018-0367 | — | — | 0.9% | Aug 15, 2018 | A vulnerability in the web-based management interface of the Cisco Registered Envelope Service could allow an authentica... |
| CVE-2018-10512 | — | — | 1.1% | Aug 15, 2018 | A vulnerability in Trend Micro Control Manager (versions 6.0 and 7.0) could allow an attacker to manipulate a reverse pr... |
| CVE-2018-10510 | — | — | 6.5% | Aug 15, 2018 | A Directory Traversal Remote Code Execution vulnerability in Trend Micro Control Manager (versions 6.0 and 7.0) could al... |
| CVE-2018-9129 | — | — | 1.0% | Aug 15, 2018 | ZyXEL ZyWALL/USG series devices have a Bleichenbacher vulnerability in their Internet Key Exchange (IKE) handshake imple... |
| CVE-2018-8753 | — | — | 1.6% | Aug 15, 2018 | The IKEv1 implementation in Clavister cOS Core before 11.00.11, 11.20.xx before 11.20.06, and 12.00.xx before 12.00.09 a... |
| CVE-2018-14780 | — | — | 0.4% | Aug 15, 2018 | An out-of-bounds read issue was discovered in the Yubico-Piv 1.5.0 smartcard driver. The file lib/ykpiv.c contains the f... |
| CVE-2018-14779 | — | — | 0.5% | Aug 15, 2018 | A buffer overflow issue was discovered in the Yubico-Piv 1.5.0 smartcard driver. The file lib/ykpiv.c contains the follo... |
| CVE-2018-14722 | — | — | 3.0% | Aug 15, 2018 | An issue was discovered in evaluate_auto_mountpoint in btrfsmaintenance-functions in btrfsmaintenance through 0.4.1. Cod... |
| CVE-2018-14007 | — | — | 56.1% | Aug 15, 2018 | Citrix XenServer 7.1 and newer allows Directory Traversal. |
| CVE-2018-11247 | — | — | 2.6% | Aug 15, 2018 | The JMX/RMI interface in Nasdaq BWise 5.0 does not require authentication for an SAP BO Component, which allows remote a... |
| CVE-2018-8412 | — | — | 1.2% | Aug 15, 2018 | An elevation of privilege vulnerability exists when the Microsoft AutoUpdate (MAU) application for Mac improperly valida... |
| CVE-2018-8404 | — | — | 1.1% | Aug 15, 2018 | An elevation of privilege vulnerability exists in Windows when the Win32k component fails to properly handle objects in ... |
| CVE-2018-8403 | — | — | 12.6% | Aug 15, 2018 | A remote code execution vulnerability exists in the way that Microsoft browsers access objects in memory, aka "Microsoft... |
| CVE-2018-8401 | — | — | 1.9% | Aug 15, 2018 | An elevation of privilege vulnerability exists when the DirectX Graphics Kernel (DXGKRNL) driver improperly handles obje... |
| CVE-2018-8400 | — | — | 1.9% | Aug 15, 2018 | An elevation of privilege vulnerability exists when the DirectX Graphics Kernel (DXGKRNL) driver improperly handles obje... |
| CVE-2018-8399 | — | — | 1.1% | Aug 15, 2018 | An elevation of privilege vulnerability exists in Windows when the Win32k component fails to properly handle objects in ... |
| CVE-2018-8398 | — | — | 8.0% | Aug 15, 2018 | An information disclosure vulnerability exists when the Windows GDI component improperly discloses the contents of its m... |
| CVE-2018-8397 | — | — | 67.9% | Aug 15, 2018 | A remote code execution vulnerability exists in the way that the Windows Graphics Device Interface (GDI) handles objects... |
| CVE-2018-8396 | — | — | 2.4% | Aug 15, 2018 | An information disclosure vulnerability exists when the Windows GDI component improperly discloses the contents of its m... |
| CVE-2018-8394 | — | — | 8.0% | Aug 15, 2018 | An information disclosure vulnerability exists when the Windows GDI component improperly discloses the contents of its m... |
| CVE-2018-8390 | — | — | 14.4% | Aug 15, 2018 | A remote code execution vulnerability exists in the way that the ChakraCore scripting engine handles objects in memory, ... |
| CVE-2018-8389 | — | — | 28.6% | Aug 15, 2018 | A remote code execution vulnerability exists in the way that the scripting engine handles objects in memory in Internet ... |
| CVE-2018-8388 | — | — | 3.6% | Aug 15, 2018 | A spoofing vulnerability exists when Microsoft Edge improperly handles specific HTML content, aka "Microsoft Edge Spoofi... |
| CVE-2018-8387 | — | — | 9.5% | Aug 15, 2018 | A remote code execution vulnerability exists when Microsoft Edge improperly accesses objects in memory, aka "Microsoft E... |
| CVE-2018-8385 | — | — | 14.2% | Aug 15, 2018 | A remote code execution vulnerability exists in the way the scripting engine handles objects in memory in Microsoft brow... |
Check if your code is affected by 2018 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now