2018 CVE Vulnerabilities

17,817 CVEs published in 2018.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2018-20548HIGH8.8There is an illegal WRITE memory access at common-image.c (function load_image) in libcaca 0.99.beta19 for 1bpp data.
CVE-2018-20547HIGH8.1There is an illegal READ memory access at caca/dither.c (function get_rgba_default) in libcaca 0.99.beta19 for 24bpp dat...
CVE-2018-20546HIGH8.1There is an illegal READ memory access at caca/dither.c (function get_rgba_default) in libcaca 0.99.beta19 for the defau...
CVE-2018-20545HIGH8.8There is an illegal WRITE memory access at common-image.c (function load_image) in libcaca 0.99.beta19 for 4bpp data.
CVE-2018-20437HIGH7.5An issue was discovered in the fileDownload function in the CommonController class in FEBS-Shiro before 2018-11-05. An a...
CVE-2018-20247HIGH7.8In Foxit Quick PDF Library (all versions prior to 16.12), issue where loading a malformed or malicious PDF containing a ...
CVE-2018-7801HIGH8.8A Code Injection vulnerability exists in EVLink Parking, v3.2.0-12_v1 and earlier, which could enable access with maximu...
CVE-2018-8920HIGH7.2Improper neutralization of escape vulnerability in Log Exporter in Synology DiskStation Manager (DSM) before 6.1.6-15266...
CVE-2018-8919HIGH8.3Information exposure vulnerability in SYNO.Core.Desktop.SessionData in Synology DiskStation Manager (DSM) before 6.1.6-1...
CVE-2018-15465HIGH8.1A vulnerability in the authorization subsystem of Cisco Adaptive Security Appliance (ASA) Software could allow an authen...
CVE-2018-19322HIGH7.8The GPCIDrv and GDrv low-level drivers in GIGABYTE APP Center v1.05.21 and earlier, AORUS GRAPHICS ENGINE before 1.57, X...
CVE-2018-19321HIGH7.8The GPCIDrv and GDrv low-level drivers in GIGABYTE APP Center v1.05.21 and earlier, AORUS GRAPHICS ENGINE before 1.57, X...
CVE-2018-19320HIGH7.8The GDrv low-level driver in GIGABYTE APP Center v1.05.21 and earlier, AORUS GRAPHICS ENGINE before 1.57, XTREME GAMING ...
CVE-2018-5196HIGH8.8Alzip 10.76.0.0 and earlier is vulnerable to a stack overflow caused by improper bounds checking. By persuading a victim...
CVE-2018-20191HIGH7.5hw/rdma/vmw/pvrdma_main.c in QEMU does not implement a read operation (such as uar_read by analogy to uar_write), which ...
CVE-2018-20216HIGH7.5QEMU can have an infinite loop in hw/rdma/vmw/pvrdma_dev_ring.c because return values are not checked (and -1 is mishand...
CVE-2018-20125HIGH7.5hw/rdma/vmw/pvrdma_cmd.c in QEMU allows attackers to cause a denial of service (NULL pointer dereference or excessive me...
CVE-2018-1000878HIGH8.8libarchive version commit 416694915449219d505531b1096384f3237dd6cc onwards (release v3.1.0 onwards) contains a CWE-416: ...
CVE-2018-1000877HIGH8.8libarchive version commit 416694915449219d505531b1096384f3237dd6cc onwards (release v3.1.0 onwards) contains a CWE-415: ...
CVE-2018-1000876HIGH7.8binutils version 2.32 and earlier contains a Integer Overflow vulnerability in objdump, bfd_get_dynamic_reloc_upper_boun...
CVE-2018-1000857HIGH8.8log-user-session version 0.7 and earlier contains a Directory Traversal vulnerability in Main SUID-binary /usr/local/bin...
CVE-2018-5200HIGH7.8KMPlayer 4.2.2.15 and earlier have a Heap Based Buffer Overflow Vulnerability. It could be exploited with a crafted FLV ...
CVE-2018-5199HIGH8.8In Veraport G3 ALL on MacOS, due to insufficient domain validation, It is possible to overwrite installation file to mal...
CVE-2018-5198HIGH8.1In Veraport G3 ALL on MacOS, a race condition when calling the Veraport API allow remote attacker to cause arbitrary fil...
CVE-2018-1973HIGH7.2IBM API Connect 5.0.0.0 through 5.0.8.4 allows a user with limited 'API Administrator level access to give themselves fu...

Check if your code is affected by 2018 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now