2018 CVE Vulnerabilities
17,817 CVEs published in 2018.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2018-11452 | — | — | 2.4% | Jul 23, 2018 | A vulnerability has been identified in Firmware variant IEC 61850 for EN100 Ethernet module (All versions < V4.33), Firm... |
| CVE-2018-11451 | — | — | 2.4% | Jul 23, 2018 | A vulnerability has been identified in Firmware variant IEC 61850 for EN100 Ethernet module (All versions < V4.33), Firm... |
| CVE-2018-14570 | — | — | 1.8% | Jul 23, 2018 | A file upload vulnerability in application/shop/controller/member.php in Niushop B2B2C Multi-business basic version V1.1... |
| CVE-2018-14568 | — | — | 2.0% | Jul 23, 2018 | Suricata before 4.0.5 stops TCP stream inspection upon a TCP RST from a server. This allows detection bypass because Win... |
| CVE-2018-14328 | — | — | 10.7% | Jul 23, 2018 | Brynamics "Online Trade - Online trading and cryptocurrency investment system" allows remote attackers to obtain sensiti... |
| CVE-2018-1999006 | — | — | 0.9% | Jul 23, 2018 | A exposure of sensitive information vulnerability exists in Jenkins 2.132 and earlier, 2.121.1 and earlier in Plugin.jav... |
| CVE-2018-11757 | — | — | 6.9% | Jul 23, 2018 | In Docker Skeleton Runtime for Apache OpenWhisk, a Docker action inheriting the Docker tag openwhisk/dockerskeleton:1.3.... |
| CVE-2018-11756 | — | — | 8.2% | Jul 23, 2018 | In PHP Runtime for Apache OpenWhisk, a Docker action inheriting one of the Docker tags openwhisk/action-php-v7.2:1.0.0 o... |
| CVE-2018-1999024 | — | — | 1.3% | Jul 23, 2018 | MathJax version prior to version 2.7.4 contains a Cross Site Scripting (XSS) vulnerability in the \unicode{} macro that ... |
| CVE-2018-1999023 | — | — | 1.7% | Jul 23, 2018 | The Battle for Wesnoth Project version 1.7.0 through 1.14.3 contains a Code Injection vulnerability in the Lua scripting... |
| CVE-2018-1999022 | — | — | 2.2% | Jul 23, 2018 | PEAR HTML_QuickForm version 3.2.14 contains an eval injection (CWE-95) vulnerability in HTML_QuickForm's getSubmitValue ... |
| CVE-2018-5013 | — | — | — | Jul 23, 2018 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2018-5103. Reason: This candidate is a duplicate of ... |
| CVE-2018-1999021 | — | — | 0.7% | Jul 23, 2018 | Gleezcms Gleez Cms version 1.3.0 contains a Cross Site Scripting (XSS) vulnerability in Profile page that can result in ... |
| CVE-2018-1999020 | — | — | 1.3% | Jul 23, 2018 | Open Networking Foundation (ONF) ONOS version 1.13.2 and earlier version contains a Directory Traversal vulnerability in... |
| CVE-2018-1999018 | — | — | 3.5% | Jul 23, 2018 | Pydio version 8.2.1 and prior contains an Unvalidated user input leading to Remote Code Execution (RCE) vulnerability in... |
| CVE-2018-1999017 | — | — | 1.0% | Jul 23, 2018 | Pydio version 8.2.0 and earlier contains a Server-Side Request Forgery (SSRF) vulnerability in plugins/action.updater/Up... |
| CVE-2018-1999016 | — | — | 1.0% | Jul 23, 2018 | Pydio version 8.2.0 and earlier contains a Cross Site Scripting (XSS) vulnerability in ./core/vendor/meenie/javascript-p... |
| CVE-2018-1999015 | — | — | 1.8% | Jul 23, 2018 | FFmpeg before commit 5aba5b89d0b1d73164d3b81764828bb8b20ff32a contains an out of array read vulnerability in ASF_F forma... |
| CVE-2018-1999014 | — | — | 1.5% | Jul 23, 2018 | FFmpeg before commit bab0716c7f4793ec42e05a5aa7e80d82a0dd4e75 contains an out of array access vulnerability in MXF forma... |
| CVE-2018-1999013 | — | — | 1.8% | Jul 23, 2018 | FFmpeg before commit a7e032a277452366771951e29fd0bf2bd5c029f0 contains a use-after-free vulnerability in the realmedia d... |
| CVE-2018-1999012 | — | — | 2.2% | Jul 23, 2018 | FFmpeg before commit 9807d3976be0e92e4ece3b4b1701be894cd7c2e1 contains a CWE-835: Infinite loop vulnerability in pva for... |
| CVE-2018-1999011 | — | — | 4.2% | Jul 23, 2018 | FFmpeg before commit 2b46ebdbff1d8dec7a3d8ea280a612b91a582869 contains a Buffer Overflow vulnerability in asf_o format d... |
| CVE-2018-1999010 | — | — | 3.1% | Jul 23, 2018 | FFmpeg before commit cced03dd667a5df6df8fd40d8de0bff477ee02e8 contains multiple out of array access vulnerabilities in t... |
| CVE-2018-1999009 | — | — | 2.4% | Jul 23, 2018 | October CMS version prior to Build 437 contains a Local File Inclusion vulnerability in modules/system/traits/ViewMaker.... |
| CVE-2018-1999008 | — | — | 0.5% | Jul 23, 2018 | October CMS version prior to build 437 contains a Cross Site Scripting (XSS) vulnerability in the Media module and creat... |
Check if your code is affected by 2018 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now