2018 CVE Vulnerabilities
17,817 CVEs published in 2018.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2018-1857 | MEDIUM | 4.8 | 1.7% | Nov 9, 2018 | IBM DB2 for Linux, UNIX and Windows (includes DB2 Connect Server) 11.1 could allow a user to bypass FGAC control and gai... |
| CVE-2018-1799 | MEDIUM | 6.2 | 0.4% | Nov 9, 2018 | IBM DB2 for Linux, UNIX and Windows (includes DB2 Connect Server) 9.7, 10.1, 10.5, and 11.1 could allow a local unprivil... |
| CVE-2018-1684 | MEDIUM | 5.3 | 1.3% | Nov 9, 2018 | IBM WebSphere MQ 8.0 through 9.1 is vulnerable to a error with MQTT topic string publishing that can cause a denial of s... |
| CVE-2018-15451 | MEDIUM | 5.4 | 0.9% | Nov 8, 2018 | A vulnerability in the web-based management interface of Cisco Prime Service Catalog could allow an authenticated, remot... |
| CVE-2018-15450 | MEDIUM | 6.5 | 2.5% | Nov 8, 2018 | A vulnerability in the web-based UI of Cisco Prime Collaboration Assurance could allow an authenticated, remote attacker... |
| CVE-2018-15449 | MEDIUM | 4.3 | 1.7% | Nov 8, 2018 | A vulnerability in the web-based management interface of Cisco Video Surveillance Media Server could allow an unauthenti... |
| CVE-2018-15447 | MEDIUM | 6.5 | 1.7% | Nov 8, 2018 | A vulnerability in the web framework code of Cisco Integrated Management Controller (IMC) Supervisor could allow an unau... |
| CVE-2018-15446 | MEDIUM | 5.3 | 2.2% | Nov 8, 2018 | A vulnerability in Cisco Meeting Server could allow an unauthenticated, remote attacker to gain access to sensitive info... |
| CVE-2018-15445 | MEDIUM | 6.3 | 0.9% | Nov 8, 2018 | A vulnerability in the web-based management interface of Cisco Energy Management Suite Software could allow an authentic... |
| CVE-2018-15444 | MEDIUM | 6.3 | 2.0% | Nov 8, 2018 | A vulnerability in the web-based user interface of Cisco Energy Management Suite Software could allow an authenticated, ... |
| CVE-2018-15443 | MEDIUM | 5.8 | 2.8% | Nov 8, 2018 | A vulnerability in the detection engine of Cisco Firepower System Software could allow an unauthenticated, remote attack... |
| CVE-2018-15437 | MEDIUM | 5.5 | 1.0% | Nov 8, 2018 | A vulnerability in the system scanning component of Cisco Immunet and Cisco Advanced Malware Protection (AMP) for Endpoi... |
| CVE-2018-15393 | MEDIUM | 4.8 | 1.2% | Nov 8, 2018 | A vulnerability in the web-based management interface of Cisco Content Security Management Appliance (SMA) Software coul... |
| CVE-2018-19108 | MEDIUM | 6.5 | 1.9% | Nov 8, 2018 | In Exiv2 0.26, Exiv2::PsdImage::readMetadata in psdimage.cpp in the PSD image reader may suffer from a denial of service... |
| CVE-2018-19107 | MEDIUM | 6.5 | 1.8% | Nov 8, 2018 | In Exiv2 0.26, Exiv2::IptcParser::decode in iptc.cpp (called from psdimage.cpp in the PSD image reader) may suffer from ... |
| CVE-2018-19058 | MEDIUM | 6.5 | 2.1% | Nov 7, 2018 | An issue was discovered in Poppler 0.71.0. There is a reachable abort in Object.h, will lead to denial of service becaus... |
| CVE-2018-16845 | MEDIUM | 6.1 | 9.8% | Nov 7, 2018 | nginx before versions 1.15.6, 1.14.1 has a vulnerability in the ngx_http_mp4_module, which might allow an attacker to ca... |
| CVE-2018-1694 | MEDIUM | 5.9 | 1.8% | Nov 6, 2018 | IBM Jazz applications (IBM Rational Collaborative Lifecycle Management 5.0 through 5.02 and 6.0 through 6.0.6, IBM Ratio... |
| CVE-2018-1606 | MEDIUM | 4.3 | 1.0% | Nov 6, 2018 | IBM Jazz based applications (IBM Rational Collaborative Lifecycle Management 5.0 through 5.02 and 6.0 through 6.0.6, IBM... |
| CVE-2018-3920 | MEDIUM | 6.8 | 0.6% | Nov 2, 2018 | An exploitable code execution vulnerability exists in the firmware update functionality of the Yi Home Camera 27US 1.8.7... |
| CVE-2018-3891 | MEDIUM | 4.6 | 0.4% | Nov 2, 2018 | An exploitable firmware downgrade vulnerability exists in the firmware update functionality of Yi Home Camera 27US 1.8.7... |
| CVE-2018-3890 | MEDIUM | 6.8 | 1.7% | Nov 2, 2018 | An exploitable code execution vulnerability exists in the firmware update functionality of Yi Home Camera 27US 1.8.7.0D.... |
| CVE-2018-1878 | MEDIUM | 5.3 | 1.3% | Nov 2, 2018 | IBM Robotic Process Automation with Automation Anywhere 11 could disclose sensitive information in a web request that co... |
| CVE-2018-1877 | MEDIUM | 6.2 | 0.2% | Nov 2, 2018 | IBM Robotic Process Automation with Automation Anywhere 11 could store highly sensitive information in the form of unenc... |
| CVE-2018-1876 | MEDIUM | 6.2 | 0.4% | Nov 2, 2018 | IBM Robotic Process Automation with Automation Anywhere 11 could under certain cases, display the password in a Control ... |
Check if your code is affected by 2018 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now