2018 CVE Vulnerabilities
17,817 CVEs published in 2018.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2018-17917 | — | — | 1.3% | Oct 10, 2018 | All versions of Hangzhou Xiongmai Technology Co., Ltd XMeye P2P Cloud Server may allow an attacker to use MAC addresses ... |
| CVE-2018-17915 | — | — | 1.1% | Oct 10, 2018 | All versions of Hangzhou Xiongmai Technology Co., Ltd XMeye P2P Cloud Server do not encrypt all device communication. Th... |
| CVE-2018-8006 | MEDIUM | 6.1 | 56.2% | Oct 10, 2018 | An instance of a cross-site scripting vulnerability was identified to be present in the web based administration console... |
| CVE-2018-15311 | — | — | 1.4% | Oct 10, 2018 | When F5 BIG-IP 13.0.0-13.1.0.5, 12.1.0-12.1.3.5, 11.6.0-11.6.3.2, or 11.5.1-11.5.6 is processing specially crafted TCP t... |
| CVE-2018-12131 | — | — | 0.3% | Oct 10, 2018 | Permissions in the driver pack installers for Intel NVMe before version 4.0.0.1007 and Intel RSTe before version 4.7.0.2... |
| CVE-2018-8533 | — | — | 23.4% | Oct 10, 2018 | An information disclosure vulnerability exists in Microsoft SQL Server Management Studio (SSMS) when parsing malicious X... |
| CVE-2018-8532 | — | — | 23.4% | Oct 10, 2018 | An information disclosure vulnerability exists in Microsoft SQL Server Management Studio (SSMS) when parsing a malicious... |
| CVE-2018-8531 | — | — | 15.2% | Oct 10, 2018 | A remote code execution vulnerability exists in the way that Azure IoT Hub Device Client SDK using MQTT protocol accesse... |
| CVE-2018-8530 | — | — | 5.5% | Oct 10, 2018 | A security feature bypass vulnerability exists when Microsoft Edge improperly handles requests of different origins, aka... |
| CVE-2018-8527 | — | — | 23.4% | Oct 10, 2018 | An information disclosure vulnerability exists in Microsoft SQL Server Management Studio (SSMS) when parsing a malicious... |
| CVE-2018-8518 | — | — | 2.7% | Oct 10, 2018 | An elevation of privilege vulnerability exists when Microsoft SharePoint Server does not properly sanitize a specially c... |
| CVE-2018-8513 | — | — | 14.6% | Oct 10, 2018 | A remote code execution vulnerability exists in the way that the Chakra scripting engine handles objects in memory in Mi... |
| CVE-2018-8512 | — | — | 3.5% | Oct 10, 2018 | A security feature bypass vulnerability exists in Microsoft Edge when the Edge Content Security Policy (CSP) fails to pr... |
| CVE-2018-8511 | — | — | 14.6% | Oct 10, 2018 | A remote code execution vulnerability exists in the way that the Chakra scripting engine handles objects in memory in Mi... |
| CVE-2018-8510 | — | — | 14.6% | Oct 10, 2018 | A remote code execution vulnerability exists in the way that the Chakra scripting engine handles objects in memory in Mi... |
| CVE-2018-8509 | — | — | 13.1% | Oct 10, 2018 | A remote code execution vulnerability exists when Microsoft Edge improperly accesses objects in memory, aka "Microsoft E... |
| CVE-2018-8506 | — | — | 4.4% | Oct 10, 2018 | An Information Disclosure vulnerability exists in the way that Microsoft Windows Codecs Library handles objects in memor... |
| CVE-2018-8505 | — | — | 14.6% | Oct 10, 2018 | A remote code execution vulnerability exists in the way that the Chakra scripting engine handles objects in memory in Mi... |
| CVE-2018-8504 | — | — | 18.7% | Oct 10, 2018 | A remote code execution vulnerability exists in Microsoft Word software when the software fails to properly handle objec... |
| CVE-2018-8503 | — | — | 14.6% | Oct 10, 2018 | A remote code execution vulnerability exists in the way that the Chakra scripting engine handles objects in memory in Mi... |
| CVE-2018-8502 | — | — | 19.8% | Oct 10, 2018 | A remote code execution vulnerability exists in Microsoft Excel software when the software fails to properly handle obje... |
| CVE-2018-8501 | — | — | 18.7% | Oct 10, 2018 | A remote code execution vulnerability exists in Microsoft PowerPoint software when the software fails to properly handle... |
| CVE-2018-8500 | — | — | 18.5% | Oct 10, 2018 | A remote code execution vulnerability exists in the way that the ChakraCore scripting engine handles objects in memory, ... |
| CVE-2018-8498 | — | — | 2.3% | Oct 10, 2018 | An elevation of privilege vulnerability exists when Microsoft SharePoint Server does not properly sanitize a specially c... |
| CVE-2018-8497 | — | — | 1.1% | Oct 10, 2018 | An elevation of privilege vulnerability exists in the way that the Windows Kernel handles objects in memory, aka "Window... |
Check if your code is affected by 2018 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now