2018 CVE Vulnerabilities
17,817 CVEs published in 2018.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2018-17974 | — | — | 1.0% | Oct 3, 2018 | An issue was discovered in Tcpreplay 4.3.0 beta1. A heap-based buffer over-read was triggered in the function dlt_en10mb... |
| CVE-2018-17972 | — | — | 0.4% | Oct 3, 2018 | An issue was discovered in the proc_pid_stack function in fs/proc/base.c in the Linux kernel through 4.18.11. It does no... |
| CVE-2018-6695 | MEDIUM | 5.9 | 0.7% | Oct 3, 2018 | SSH host keys generation vulnerability in the server in McAfee Threat Intelligence Exchange Server (TIE Server) 1.3.0, 2... |
| CVE-2018-5921 | — | — | 0.7% | Oct 3, 2018 | A potential security vulnerability has been identified with certain HP printers and MFPs in 2405129_000052 and other fir... |
| CVE-2018-17881 | — | — | 1.5% | Oct 3, 2018 | On D-Link DIR-823G 2018-09-19 devices, the GoAhead configuration allows /HNAP1 SetPasswdSettings commands without authen... |
| CVE-2018-17880 | — | — | 1.6% | Oct 3, 2018 | On D-Link DIR-823G 2018-09-19 devices, the GoAhead configuration allows /HNAP1 RunReboot commands without authentication... |
| CVE-2018-17562 | — | — | 1.5% | Oct 3, 2018 | Multi-Tech FaxFinder before 5.1.6 has SQL Injection via a status/call_details?oid= URI, allowing an attacker to extract ... |
| CVE-2018-17553 | — | — | 79.0% | Oct 3, 2018 | An "Unrestricted Upload of File with Dangerous Type" issue with directory traversal in navigate_upload.php in Naviwebs N... |
| CVE-2018-17552 | — | — | 84.1% | Oct 3, 2018 | SQL Injection in login.php in Naviwebs Navigate CMS 2.8 allows remote attackers to bypass authentication via the navigat... |
| CVE-2018-17540 | — | — | 3.5% | Oct 3, 2018 | The gmp plugin in strongSwan before 5.7.1 has a Buffer Overflow via a crafted certificate. |
| CVE-2018-17428 | — | — | 2.8% | Oct 3, 2018 | An issue was discovered in OPAC EasyWeb Five 5.7. There is SQL injection via the w2001/index.php?scelta=campi biblio par... |
| CVE-2018-17408 | — | — | 19.0% | Oct 3, 2018 | Stack-based buffer overflows in Zahir Accounting Enterprise Plus 6 through build 10b allow remote attackers to execute a... |
| CVE-2018-17969 | — | — | 1.4% | Oct 3, 2018 | Samsung SCX-6545X V2.00.03.01 03-23-2012 devices allows remote attackers to discover cleartext credentials via iso.3.6.1... |
| CVE-2018-17967 | — | — | 1.5% | Oct 3, 2018 | ImageMagick 7.0.7-28 has a memory leak vulnerability in ReadBGRImage in coders/bgr.c. |
| CVE-2018-17966 | — | — | 1.7% | Oct 3, 2018 | ImageMagick 7.0.7-28 has a memory leak vulnerability in WritePDBImage in coders/pdb.c. |
| CVE-2018-17965 | — | — | 1.8% | Oct 3, 2018 | ImageMagick 7.0.7-28 has a memory leak vulnerability in WriteSGIImage in coders/sgi.c. |
| CVE-2018-17054 | — | — | 0.8% | Oct 3, 2018 | Cross-site scripting (XSS) vulnerability in Identity Server in Progress Sitefinity CMS versions 10.0 through 11.0 allows... |
| CVE-2018-17053 | — | — | 0.8% | Oct 3, 2018 | Cross-site scripting (XSS) vulnerability in Identity Server in Progress Sitefinity CMS versions 10.0 through 11.0 allows... |
| CVE-2018-12087 | — | — | 0.3% | Oct 3, 2018 | Failure to validate certificates in OPC Foundation UA Client Applications communicating without security allows attacker... |
| CVE-2018-16051 | — | — | 1.2% | Oct 3, 2018 | An issue was discovered in GitLab Community and Enterprise Edition before 11.0.6, 11.1.x before 11.1.5, and 11.2.x befor... |
| CVE-2018-16050 | — | — | 0.8% | Oct 3, 2018 | An issue was discovered in GitLab Community and Enterprise Edition 11.1.x before 11.1.5 and 11.2.x before 11.2.2. There ... |
| CVE-2018-16049 | — | — | 2.1% | Oct 3, 2018 | An issue was discovered in GitLab Community and Enterprise Edition before 11.0.6, 11.1.x before 11.1.5, and 11.2.x befor... |
| CVE-2018-16048 | — | — | 0.9% | Oct 3, 2018 | An issue was discovered in GitLab Community and Enterprise Edition before 11.0.6, 11.1.x before 11.1.5, and 11.2.x befor... |
| CVE-2018-3995 | HIGH | 8.8 | 2.6% | Oct 3, 2018 | An exploitable use-after-free vulnerability exists in the JavaScript engine of Foxit Software's PDF Reader, version 9.2.... |
| CVE-2018-3994 | HIGH | 8.8 | 3.2% | Oct 3, 2018 | An exploitable use-after-free vulnerability exists in the JavaScript engine of Foxit Software's Foxit PDF Reader version... |
Check if your code is affected by 2018 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now