2018 CVE Vulnerabilities
17,817 CVEs published in 2018.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2018-9082 | — | — | 0.7% | Sep 28, 2018 | For some Iomega, Lenovo, LenovoEMC NAS devices versions 4.1.402.34662 and earlier, the password changing functionality a... |
| CVE-2018-9081 | — | — | 0.5% | Sep 28, 2018 | For some Iomega, Lenovo, LenovoEMC NAS devices versions 4.1.402.34662 and earlier, the file name used for assets accessi... |
| CVE-2018-9080 | — | — | 0.7% | Sep 28, 2018 | For some Iomega, Lenovo, LenovoEMC NAS devices versions 4.1.402.34662 and earlier, by setting the Iomega cookie to a kno... |
| CVE-2018-9079 | — | — | 1.2% | Sep 28, 2018 | For some Iomega, Lenovo, LenovoEMC NAS devices versions 4.1.402.34662 and earlier, adversaries can craft URLs to modify ... |
| CVE-2018-9078 | — | — | 1.0% | Sep 28, 2018 | For some Iomega, Lenovo, LenovoEMC NAS devices versions 4.1.402.34662 and earlier, the Content Explorer application gran... |
| CVE-2018-9077 | — | — | 1.6% | Sep 28, 2018 | For some Iomega, Lenovo, LenovoEMC NAS devices versions 4.1.402.34662 and earlier, when changing the name of a share, an... |
| CVE-2018-9076 | — | — | 1.6% | Sep 28, 2018 | For some Iomega, Lenovo, LenovoEMC NAS devices versions 4.1.402.34662 and earlier, when changing the name of a share, an... |
| CVE-2018-9075 | — | — | 4.1% | Sep 28, 2018 | For some Iomega, Lenovo, LenovoEMC NAS devices versions 4.1.402.34662 and earlier, when joining a PersonalCloud setup, a... |
| CVE-2018-9074 | — | — | 1.0% | Sep 28, 2018 | For some Iomega, Lenovo, LenovoEMC NAS devices versions 4.1.402.34662 and earlier, the file upload functionality of the ... |
| CVE-2018-15764 | CRITICAL | 9.8 | 5.3% | Sep 28, 2018 | Dell EMC ESRS Policy Manager versions 6.8 and prior contain a remote code execution vulnerability due to improper config... |
| CVE-2018-1251 | HIGH | 8.3 | 2.5% | Sep 28, 2018 | Dell EMC Unity and UnityVSA versions prior to 4.3.1.1525703027 contains a URL Redirection vulnerability. A remote unauth... |
| CVE-2018-1250 | MEDIUM | 6.5 | 1.6% | Sep 28, 2018 | Dell EMC Unity and UnityVSA versions prior to 4.3.1.1525703027 contains an Authorization Bypass vulnerability. A remote ... |
| CVE-2018-1246 | MEDIUM | 4.7 | 1.1% | Sep 28, 2018 | Dell EMC Unity and UnityVSA contains reflected cross-site scripting vulnerability. A remote unauthenticated attacker cou... |
| CVE-2018-11075 | MEDIUM | 5.8 | 1.5% | Sep 28, 2018 | RSA Authentication Manager versions prior to 8.3 P3 contain a reflected cross-site scripting vulnerability in a Security... |
| CVE-2018-11074 | MEDIUM | 6.1 | 2.0% | Sep 28, 2018 | RSA Authentication Manager versions prior to 8.3 P3 are affected by a DOM-based cross-site scripting vulnerability which... |
| CVE-2018-11073 | MEDIUM | 6.5 | 1.1% | Sep 28, 2018 | RSA Authentication Manager versions prior to 8.3 P3 contain a stored cross-site scripting vulnerability in the Operation... |
| CVE-2018-5393 | — | — | 12.9% | Sep 28, 2018 | The TP-LINK EAP Controller is TP-LINK's software for remotely controlling wireless access point devices. It utilizes a J... |
| CVE-2018-15365 | — | — | 0.8% | Sep 28, 2018 | A Reflected Cross-Site Scripting (XSS) vulnerability in Trend Micro Deep Discovery Inspector 3.85 and below could allow ... |
| CVE-2018-6925 | — | — | 0.3% | Sep 28, 2018 | In FreeBSD before 11.2-STABLE(r338986), 11.2-RELEASE-p4, 11.1-RELEASE-p15, 10.4-STABLE(r338985), and 10.4-RELEASE-p13, d... |
| CVE-2018-17155 | — | — | 0.4% | Sep 28, 2018 | In FreeBSD before 11.2-STABLE(r338983), 11.2-RELEASE-p4, 11.1-RELEASE-p15, 10.4-STABLE(r338984), and 10.4-RELEASE-p13, d... |
| CVE-2018-17154 | — | — | 0.3% | Sep 28, 2018 | In FreeBSD before 11.2-STABLE(r338987), 11.2-RELEASE-p4, and 11.1-RELEASE-p15, due to insufficient memory checking in th... |
| CVE-2018-1704 | MEDIUM | 6.8 | 0.7% | Sep 28, 2018 | IBM Platform Symphony 7.1 Fix Pack 1 and 7.1.1 and IBM Spectrum Symphony 7.1.2 and 7.2.0.2 could allow a remote attacker... |
| CVE-2018-1702 | HIGH | 7.1 | 1.9% | Sep 28, 2018 | IBM Platform Symphony 7.1 Fix Pack 1 and 7.1.1 and IBM Spectrum Symphony 7.1.2 and 7.2.0.2 are vulnerable to a XML Exter... |
| CVE-2018-14648 | HIGH | 7.5 | 6.2% | Sep 28, 2018 | A flaw was found in 389 Directory Server. A specially crafted search query could lead to excessive CPU consumption in th... |
| CVE-2018-17613 | — | — | 1.6% | Sep 28, 2018 | Telegram Desktop (aka tdesktop) 1.3.16 alpha, when "Use proxy" is enabled, sends credentials and application data in cle... |
Check if your code is affected by 2018 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now