2018 CVE Vulnerabilities

17,817 CVEs published in 2018.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2018-16844HIGH7.5nginx before versions 1.15.6 and 1.14.1 has a vulnerability in the implementation of HTTP/2 that can allow for excessive...
CVE-2018-16843HIGH7.5nginx before versions 1.15.6 and 1.14.1 has a vulnerability in the implementation of HTTP/2 that can allow for excessive...
CVE-2018-19052HIGH7.5An issue was discovered in mod_alias_physical_handler in mod_alias.c in lighttpd before 1.4.50. There is potential ../ p...
CVE-2018-12415HIGH7.5The Central Administration server (emsca) component of TIBCO Software Inc.'s TIBCO Enterprise Message Service, TIBCO Ent...
CVE-2018-12414HIGH7.5The Rendezvous Routing Daemon (rvrd), Rendezvous Secure Routing Daemon (rvrsd), Rendezvous Secure Daemon (rvsd), Rendezv...
CVE-2018-12413HIGH7.5The Schema repository server (tibschemad) component of TIBCO Software Inc.'s TIBCO Messaging - Apache Kafka Distribution...
CVE-2018-12412HIGH7.5The realm server (tibrealmserver) component of TIBCO Software Inc. TIBCO FTL - Community Edition, TIBCO FTL - Developer ...
CVE-2018-12411HIGH7.5The administrative daemon (tibdgadmind) of TIBCO Software Inc.'s TIBCO ActiveSpaces - Community Edition, TIBCO ActiveSpa...
CVE-2018-16472HIGH7.5A prototype pollution attack in cached-path-relative versions <=1.0.1 allows an attacker to inject properties on Object....
CVE-2018-9363HIGH8.4In the hidp_process_report in bluetooth, there is an integer overflow. This could lead to an out of bounds write with no...
CVE-2018-16847HIGH7.8An OOB heap buffer r/w access issue was found in the NVM Express Controller emulation in QEMU. It could occur in nvme_cm...
CVE-2018-7798HIGH8.2A Insufficient Verification of Data Authenticity (CWE-345) vulnerability exists in the Modicon M221, all versions, which...
CVE-2018-3935HIGH7.5An exploitable code execution vulnerability exists in the UDP network functionality of Yi Home Camera 27US 1.8.7.0D. A s...
CVE-2018-3899HIGH7.5An exploitable code execution vulnerability exists in the QR code scanning functionality of Yi Home Camera 27US 1.8.7.0D...
CVE-2018-3898HIGH7.5An exploitable code execution vulnerability exists in the QR code scanning functionality of Yi Home Camera 27US 1.8.7.0D...
CVE-2018-3892HIGH8.1An exploitable firmware downgrade vulnerability exists in the time syncing functionality of Yi Home Camera 27US 1.8.7.0D...
CVE-2018-1846HIGH7.1IBM Rational Engineering Lifecycle Manager 5.0 through 5.0.2 and 6.0 through 6.0.6 are vulnerable to a XML External Enti...
CVE-2018-1835HIGH7.1IBM Daeja ViewONE Professional, Standard & Virtual 5 is vulnerable to a XML External Entity Injection (XXE) attack when ...
CVE-2018-3977HIGH8.8An exploitable code execution vulnerability exists in the XCF image rendering functionality of SDL2_image-2.0.3. A speci...
CVE-2018-3947HIGH8.1An exploitable information disclosure vulnerability exists in the phone-to-camera communications of Yi Home Camera 27US ...
CVE-2018-3928HIGH7.5An exploitable code execution vulnerability exists in the firmware update functionality of Yi Home Camera 27US 1.8.7.0D....
CVE-2018-3910HIGH8An exploitable code execution vulnerability exists in the cloud OTA setup functionality of Yi Home Camera 27US 1.8.7.0D....
CVE-2018-3900HIGH8.8An exploitable code execution vulnerability exists in the QR code scanning functionality of Yi Home Camera 27US 1.8.7.0D...
CVE-2018-15454HIGH8.6A vulnerability in the Session Initiation Protocol (SIP) inspection engine of Cisco Adaptive Security Appliance (ASA) So...
CVE-2018-14651HIGH8.8It was found that the fix for CVE-2018-10927, CVE-2018-10928, CVE-2018-10929, CVE-2018-10930, and CVE-2018-10926 was inc...

Check if your code is affected by 2018 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now