2018 CVE Vulnerabilities

17,817 CVEs published in 2018.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2018-7092A potential security vulnerability has been identified in HPE Intelligent Management Center Platform (IMC Plat) 7.3 E050...
CVE-2018-7091HPE XP P9000 Command View Advanced Edition Software (CVAE) has open URL redirection vulnerability in versions 7.0.0-00 t...
CVE-2018-7090HPE XP P9000 Command View Advanced Edition Software (CVAE) has local and remote cross site scripting vulnerability in ve...
CVE-2018-7078A remote code execution was identified in HPE Integrated Lights-Out 4 (iLO 4) earlier than version v2.60 and HPE Integra...
CVE-2018-7075A remote cross-site scripting (XSS) vulnerability was identified in HPE Intelligent Management Center (iMC) PLAT version...
CVE-2018-7074A remote code execution vulnerability was identified in HPE Intelligent Management Center (iMC) PLAT 7.3 E0506P07. The v...
CVE-2018-7073A local arbitrary file modification vulnerability was identified in HPE Moonshot Provisioning Manager prior to v1.24.
CVE-2018-7072A remote bypass of security restrictions vulnerability was identified in HPE Moonshot Provisioning Manager prior to v1.2...
CVE-2018-7071HPE has identified a remote access to sensitive information vulnerability in HPE Network Function Virtualization Directo...
CVE-2018-7070HPE has identified a remote disclosure of information vulnerability in HPE CentralView Fraud Risk Management earlier tha...
CVE-2018-7069HPE has identified a remote unauthenticated access to files vulnerability in HPE CentralView Fraud Risk Management earli...
CVE-2018-7068HPE has identified a remote HOST header attack vulnerability in HPE CentralView Fraud Risk Management earlier than versi...
CVE-2018-7060Aruba ClearPass 6.6.x prior to 6.6.9 and 6.7.x prior to 6.7.1 is vulnerable to CSRF attacks against authenticated users....
CVE-2018-7059Aruba ClearPass prior to 6.6.9 has a vulnerability in the API that helps to coordinate cluster actions. An authenticated...
CVE-2018-7058Aruba ClearPass, all versions of 6.6.x prior to 6.6.9 are affected by an authentication bypass vulnerability, an attacke...
CVE-2018-13877The doPayouts() function of the smart contract implementation for MegaCryptoPolis, an Ethereum game, has a Denial of Ser...
CVE-2018-14978An issue was discovered in QCMS 3.0.1. CSRF exists via the backend/user/admin/add.html URI.
CVE-2018-14977An issue was discovered in QCMS 3.0.1. upload/System/Controller/guest.php has XSS, as demonstrated by the name parameter...
CVE-2018-14976An issue was discovered in QCMS 3.0.1. upload/System/Controller/backend/category.php has XSS.
CVE-2018-14975An issue was discovered in QCMS 3.0.1. upload/System/Controller/backend/album.php has XSS.
CVE-2018-14974An issue was discovered in QCMS 3.0.1. upload/System/Controller/backend/news.php has XSS.
CVE-2018-14973An issue was discovered in QCMS 3.0.1. upload/System/Controller/backend/product.php has XSS.
CVE-2018-14972An issue was discovered in QCMS 3.0.1. upload/System/Controller/backend/down.php has XSS.
CVE-2018-14971An issue was discovered in QCMS 3.0.1. upload/System/Controller/backend/user.php has XSS.
CVE-2018-14970An issue was discovered in QCMS 3.0.1. upload/System/Controller/backend/slideshow.php has XSS.

Check if your code is affected by 2018 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now