2018 CVE Vulnerabilities

17,817 CVEs published in 2018.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2018-1857MEDIUM4.8IBM DB2 for Linux, UNIX and Windows (includes DB2 Connect Server) 11.1 could allow a user to bypass FGAC control and gai...
CVE-2018-1799MEDIUM6.2IBM DB2 for Linux, UNIX and Windows (includes DB2 Connect Server) 9.7, 10.1, 10.5, and 11.1 could allow a local unprivil...
CVE-2018-1684MEDIUM5.3IBM WebSphere MQ 8.0 through 9.1 is vulnerable to a error with MQTT topic string publishing that can cause a denial of s...
CVE-2018-15451MEDIUM5.4A vulnerability in the web-based management interface of Cisco Prime Service Catalog could allow an authenticated, remot...
CVE-2018-15450MEDIUM6.5A vulnerability in the web-based UI of Cisco Prime Collaboration Assurance could allow an authenticated, remote attacker...
CVE-2018-15449MEDIUM4.3A vulnerability in the web-based management interface of Cisco Video Surveillance Media Server could allow an unauthenti...
CVE-2018-15447MEDIUM6.5A vulnerability in the web framework code of Cisco Integrated Management Controller (IMC) Supervisor could allow an unau...
CVE-2018-15446MEDIUM5.3A vulnerability in Cisco Meeting Server could allow an unauthenticated, remote attacker to gain access to sensitive info...
CVE-2018-15445MEDIUM6.3A vulnerability in the web-based management interface of Cisco Energy Management Suite Software could allow an authentic...
CVE-2018-15444MEDIUM6.3A vulnerability in the web-based user interface of Cisco Energy Management Suite Software could allow an authenticated, ...
CVE-2018-15443MEDIUM5.8A vulnerability in the detection engine of Cisco Firepower System Software could allow an unauthenticated, remote attack...
CVE-2018-15437MEDIUM5.5A vulnerability in the system scanning component of Cisco Immunet and Cisco Advanced Malware Protection (AMP) for Endpoi...
CVE-2018-15393MEDIUM4.8A vulnerability in the web-based management interface of Cisco Content Security Management Appliance (SMA) Software coul...
CVE-2018-19108MEDIUM6.5In Exiv2 0.26, Exiv2::PsdImage::readMetadata in psdimage.cpp in the PSD image reader may suffer from a denial of service...
CVE-2018-19107MEDIUM6.5In Exiv2 0.26, Exiv2::IptcParser::decode in iptc.cpp (called from psdimage.cpp in the PSD image reader) may suffer from ...
CVE-2018-19058MEDIUM6.5An issue was discovered in Poppler 0.71.0. There is a reachable abort in Object.h, will lead to denial of service becaus...
CVE-2018-16845MEDIUM6.1nginx before versions 1.15.6, 1.14.1 has a vulnerability in the ngx_http_mp4_module, which might allow an attacker to ca...
CVE-2018-1694MEDIUM5.9IBM Jazz applications (IBM Rational Collaborative Lifecycle Management 5.0 through 5.02 and 6.0 through 6.0.6, IBM Ratio...
CVE-2018-1606MEDIUM4.3IBM Jazz based applications (IBM Rational Collaborative Lifecycle Management 5.0 through 5.02 and 6.0 through 6.0.6, IBM...
CVE-2018-3920MEDIUM6.8An exploitable code execution vulnerability exists in the firmware update functionality of the Yi Home Camera 27US 1.8.7...
CVE-2018-3891MEDIUM4.6An exploitable firmware downgrade vulnerability exists in the firmware update functionality of Yi Home Camera 27US 1.8.7...
CVE-2018-3890MEDIUM6.8An exploitable code execution vulnerability exists in the firmware update functionality of Yi Home Camera 27US 1.8.7.0D....
CVE-2018-1878MEDIUM5.3IBM Robotic Process Automation with Automation Anywhere 11 could disclose sensitive information in a web request that co...
CVE-2018-1877MEDIUM6.2IBM Robotic Process Automation with Automation Anywhere 11 could store highly sensitive information in the form of unenc...
CVE-2018-1876MEDIUM6.2IBM Robotic Process Automation with Automation Anywhere 11 could under certain cases, display the password in a Control ...

Check if your code is affected by 2018 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now