2018 CVE Vulnerabilities
17,817 CVEs published in 2018.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2018-3667 | — | — | 0.4% | Jul 10, 2018 | Installation tool IPDT (Intel Processor Diagnostic Tool) 4.1.0.24 sets permissions of installed files incorrectly, allow... |
| CVE-2018-3619 | — | — | 0.2% | Jul 10, 2018 | Information disclosure vulnerability in storage media in systems with Intel Optane memory module with Whole Disk Encrypt... |
| CVE-2018-13876 | — | — | 2.3% | Jul 10, 2018 | An issue was discovered in the HDF HDF5 1.8.20 library. There is a stack-based buffer overflow in the function H5FD_sec2... |
| CVE-2018-13875 | — | — | 0.9% | Jul 10, 2018 | An issue was discovered in the HDF HDF5 1.8.20 library. There is an out-of-bounds read in the function H5VM_memcpyvv in ... |
| CVE-2018-13874 | — | — | 1.9% | Jul 10, 2018 | An issue was discovered in the HDF HDF5 1.8.20 library. There is a stack-based buffer overflow in the function H5FD_sec2... |
| CVE-2018-13872 | — | — | 1.9% | Jul 10, 2018 | An issue was discovered in the HDF HDF5 1.8.20 library. There is a heap-based buffer overflow in the function H5G_ent_de... |
| CVE-2018-13871 | — | — | 1.9% | Jul 10, 2018 | An issue was discovered in the HDF HDF5 1.8.20 library. There is a heap-based buffer overflow in the function H5FL_blk_m... |
| CVE-2018-13870 | — | — | 2.0% | Jul 10, 2018 | An issue was discovered in the HDF HDF5 1.8.20 library. There is a heap-based buffer over-read in the function H5O_link_... |
| CVE-2018-13869 | — | — | 2.0% | Jul 10, 2018 | An issue was discovered in the HDF HDF5 1.8.20 library. There is a memcpy parameter overlap in the function H5O_link_dec... |
| CVE-2018-13868 | — | — | 1.5% | Jul 10, 2018 | An issue was discovered in the HDF HDF5 1.8.20 library. There is a heap-based buffer over-read in the function H5O_fill_... |
| CVE-2018-13867 | — | — | 2.0% | Jul 10, 2018 | An issue was discovered in the HDF HDF5 1.8.20 library. There is an out of bounds read in the function H5F__accum_read i... |
| CVE-2018-13866 | — | — | 1.6% | Jul 10, 2018 | An issue was discovered in the HDF HDF5 1.8.20 library. There is a stack-based buffer over-read in the function H5F_addr... |
| CVE-2018-13865 | — | — | 1.0% | Jul 10, 2018 | An issue was discovered in idreamsoft iCMS 7.0.9. XSS exists via the callback parameter in a public/api.php uploadpic re... |
| CVE-2018-13863 | — | — | 1.9% | Jul 10, 2018 | The MongoDB bson JavaScript module (also known as js-bson) versions 0.5.0 to 1.0.x before 1.0.5 is vulnerable to a Regul... |
| CVE-2018-2440 | — | — | 0.3% | Jul 10, 2018 | Under certain circumstances SAP Dynamic Authorization Management (DAM) by NextLabs (Java Policy Controller versions 7.7 ... |
| CVE-2018-2439 | — | — | 1.6% | Jul 10, 2018 | The SAP Internet Graphics Server (IGS), 7.20, 7.20EXT, 7.45, 7.49, 7.53, has insufficient request validation (for exampl... |
| CVE-2018-2438 | — | — | 2.0% | Jul 10, 2018 | The SAP Internet Graphics Server (IGS), 7.20, 7.20EXT, 7.45, 7.49, 7.53, has several denial-of-service vulnerabilities t... |
| CVE-2018-2437 | — | — | 3.3% | Jul 10, 2018 | The SAP Internet Graphics Service (IGS), 7.20, 7.20EXT, 7.45, 7.49, 7.53, allows an attacker to externally trigger IGS c... |
| CVE-2018-2436 | — | — | 1.3% | Jul 10, 2018 | Executing transaction WRCK in SAP R/3 Enterprise Retail (EHP6) does not perform necessary authorization checks for an au... |
| CVE-2018-2435 | — | — | 1.0% | Jul 10, 2018 | SAP NetWeaver Enterprise Portal from 7.0 to 7.02, 7.11, 7.20, 7.30, 7.31, 7.40, 7.50, does not sufficiently encode user ... |
| CVE-2018-2434 | — | — | 0.6% | Jul 10, 2018 | A content spoofing vulnerability in the following components allows to render html pages containing arbitrary plain text... |
| CVE-2018-2433 | — | — | 1.1% | Jul 10, 2018 | SAP Gateway (SAP KERNEL 32 NUC, SAP KERNEL 32 Unicode, SAP KERNEL 64 NUC, SAP KERNEL 64 Unicode 7.21, 7.21EXT, 7.22 and ... |
| CVE-2018-2431 | — | — | 1.0% | Jul 10, 2018 | SAP BusinessObjects Business Intelligence Suite, versions 4.10 and 4.20, does not sufficiently encode user controlled in... |
| CVE-2018-2427 | — | — | 1.7% | Jul 10, 2018 | SAP BusinessObjects Business Intelligence Suite, versions 4.10 and 4.20, and SAP Crystal Reports (version for Visual Stu... |
| CVE-2018-13850 | — | — | 1.2% | Jul 10, 2018 | The "Firebase Cloud Messaging (FCM) + Advance Admin Panel" component supporting Firebase Push Notification on iOS (throu... |
Check if your code is affected by 2018 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now