2018 CVE Vulnerabilities
17,817 CVEs published in 2018.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2018-11620 | — | — | 2.6% | Jul 31, 2018 | This vulnerability allows remote attackers to disclose sensitive information on vulnerable installations of Foxit Reader... |
| CVE-2018-11619 | — | — | 2.8% | Jul 31, 2018 | This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Foxit Reader 9.0.0.2... |
| CVE-2018-11618 | — | — | 2.8% | Jul 31, 2018 | This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Foxit Reader 9.0.0.2... |
| CVE-2018-11617 | — | — | 2.8% | Jul 31, 2018 | This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Foxit Reader 9.0.0.2... |
| CVE-2018-10609 | — | — | 2.3% | Jul 31, 2018 | Martem TELEM GW6 and GWM devices with firmware 2018.04.18-linux_4-01-601cb47 and prior allow improper sanitization of da... |
| CVE-2018-10607 | — | — | 3.2% | Jul 31, 2018 | Martem TELEM GW6 and GWM devices with firmware 2018.04.18-linux_4-01-601cb47 and prior allow the creation of new connect... |
| CVE-2018-10603 | — | — | 3.4% | Jul 31, 2018 | Martem TELEM GW6 and GWM devices with firmware 2018.04.18-linux_4-01-601cb47 and prior do not perform authentication of ... |
| CVE-2018-10592 | — | — | 6.9% | Jul 31, 2018 | Yokogawa STARDOM FCJ controllers R4.02 and prior, FCN-100 controllers R4.02 and prior, FCN-RTU controllers R4.02 and pri... |
| CVE-2018-7994 | — | — | 1.3% | Jul 31, 2018 | Some Huawei products IPS Module V500R001C50; NGFW Module V500R001C50; V500R002C10; NIP6300 V500R001C50; NIP6600 V500R001... |
| CVE-2018-7993 | — | — | 1.1% | Jul 31, 2018 | HUAWEI Mate 10 smartphones with versions earlier than ALP-AL00 8.1.0.311 have a use after free vulnerability on mediaser... |
| CVE-2018-7992 | — | — | 0.5% | Jul 31, 2018 | Mdapt Driver of Huawei MediaPad M3 BTV-W09C128B353CUSTC128D001; Mate 9 Pro versions earlier than 8.0.0.356(C00); P10 Plu... |
| CVE-2018-7957 | — | — | 0.2% | Jul 31, 2018 | Huawei smartphones with software Victoria-AL00 8.0.0.336a(C00) have an information leakage vulnerability. Because an int... |
| CVE-2018-7947 | — | — | 0.2% | Jul 31, 2018 | Huawei mobile phones with versions earlier before Emily-AL00A 8.1.0.153(C00) have an authentication bypass vulnerability... |
| CVE-2018-7934 | — | — | 0.6% | Jul 31, 2018 | Some Huawei mobile phone with the versions before BLA-L29 8.0.0.145(C432) have a denial of service (DoS) vulnerability b... |
| CVE-2018-5544 | — | — | 2.5% | Jul 31, 2018 | When the F5 BIG-IP APM 13.0.0-13.1.1 or 12.1.0-12.1.3 renders certain pages (pages with a logon agent or a confirm box),... |
| CVE-2018-5543 | — | — | 1.2% | Jul 31, 2018 | The F5 BIG-IP Controller for Kubernetes 1.0.0-1.5.0 (k8s-bigip-crtl) passes BIG-IP username and password as command line... |
| CVE-2018-14581 | — | — | 1.8% | Jul 31, 2018 | Redgate .NET Reflector before 10.0.7.774 and SmartAssembly before 6.12.5 allow attackers to execute code by decompiling ... |
| CVE-2018-14533 | — | — | 1.5% | Jul 31, 2018 | read_tmp and write_tmp in Inteno IOPSYS allow attackers to gain privileges after writing to /tmp/etc/smb.conf because /v... |
| CVE-2018-14432 | — | — | 1.6% | Jul 31, 2018 | In the Federation component of OpenStack Keystone before 11.0.4, 12.0.0, and 13.0.0, an authenticated "GET /v3/OS-FEDERA... |
| CVE-2018-12944 | — | — | 1.1% | Jul 31, 2018 | Persistent Cross-Site Scripting (XSS) vulnerability in the "Categories" feature in SeedDMS (formerly LetoDMS and MyDMS) ... |
| CVE-2018-12943 | — | — | 1.1% | Jul 31, 2018 | Cross-Site Scripting (XSS) vulnerability in every page that includes the "action" URL parameter in SeedDMS (formerly Let... |
| CVE-2018-12942 | — | — | 1.5% | Jul 31, 2018 | SQL injection vulnerability in the "Users management" functionality in SeedDMS (formerly LetoDMS and MyDMS) before 5.1.8... |
| CVE-2018-12941 | — | — | 3.6% | Jul 31, 2018 | This vulnerability allows remote attackers to execute arbitrary code in SeedDMS (formerly LetoDMS and MyDMS) before 5.1.... |
| CVE-2018-12940 | — | — | 2.5% | Jul 31, 2018 | Unrestricted file upload vulnerability in "op/op.UploadChunks.php" in SeedDMS (formerly LetoDMS and MyDMS) before 5.1.8 ... |
| CVE-2018-12939 | — | — | 2.0% | Jul 31, 2018 | A directory traversal flaw in SeedDMS (formerly LetoDMS and MyDMS) before 5.1.8 allows an authenticated attacker to writ... |
Check if your code is affected by 2018 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now