2018 CVE Vulnerabilities

17,817 CVEs published in 2018.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2018-7769The vulnerability exists within processing of xmlserver.php in Schneider Electric U.motion Builder software versions pri...
CVE-2018-7768The vulnerability exists within processing of loadtemplate.php in Schneider Electric U.motion Builder software versions ...
CVE-2018-7767The vulnerability exists within processing of editobject.php in Schneider Electric U.motion Builder software versions pr...
CVE-2018-7766The vulnerability exists within processing of track_getdata.php in Schneider Electric U.motion Builder software versions...
CVE-2018-7765The vulnerability exists within processing of track_import_export.php in Schneider Electric U.motion Builder software ve...
CVE-2018-7764The vulnerability exists within runscript.php applet in Schneider Electric U.motion Builder software versions prior to v...
CVE-2018-7763The vulnerability exists within css.inc.php in Schneider Electric U.motion Builder software versions prior to v1.3.4. Th...
CVE-2018-4856A vulnerability has been identified in SICLOCK TC100 (All versions) and SICLOCK TC400 (All versions). An attacker with a...
CVE-2018-4855A vulnerability has been identified in SICLOCK TC100 (All versions) and SICLOCK TC400 (All versions). Unencrypted storag...
CVE-2018-4854A vulnerability has been identified in SICLOCK TC100 (All versions) and SICLOCK TC400 (All versions). An attacker with n...
CVE-2018-4853A vulnerability has been identified in SICLOCK TC100 (All versions) and SICLOCK TC400 (All versions). An attacker with n...
CVE-2018-4852A vulnerability has been identified in SICLOCK TC100 (All versions) and SICLOCK TC400 (All versions). An attacker with n...
CVE-2018-4851A vulnerability has been identified in SICLOCK TC100 (All versions) and SICLOCK TC400 (All versions). An attacker with n...
CVE-2018-13101KioskSimpleService.exe in RedSwimmer KioskSimple 1.4.7.0 suffers from a privilege escalation vulnerability in the WCF en...
CVE-2018-13065ModSecurity 3.0.0 has XSS via an onerror attribute of an IMG element. NOTE: a third party has disputed this issue becaus...
CVE-2018-12255An XSS issue was discovered in InvoicePlane 1.5.10 via the "Quote PDF Password(Optional)" field.
CVE-2018-13100An issue was discovered in fs/f2fs/super.c in the Linux kernel through 4.17.3, which does not properly validate secs_per...
CVE-2018-13098An issue was discovered in fs/f2fs/inode.c in the Linux kernel through 4.17.3. A denial of service (slab out-of-bounds r...
CVE-2018-13097An issue was discovered in fs/f2fs/super.c in the Linux kernel through 4.17.3. There is an out-of-bounds read or a divid...
CVE-2018-13095An issue was discovered in fs/xfs/libxfs/xfs_inode_buf.c in the Linux kernel through 4.17.3. A denial of service (memory...
CVE-2018-13094An issue was discovered in fs/xfs/libxfs/xfs_attr_leaf.c in the Linux kernel through 4.17.3. An OOPS may occur for a cor...
CVE-2018-13093An issue was discovered in fs/xfs/xfs_icache.c in the Linux kernel through 4.17.3. There is a NULL pointer dereference a...
CVE-2018-13092The mintToken function of a smart contract implementation for Reimburse Token (REIM), an Ethereum token, has an integer ...
CVE-2018-13091The mintToken function of a smart contract implementation for sumocoin (SUMO), an Ethereum token, has an integer overflo...
CVE-2018-13090The mintToken function of a smart contract implementation for YiTongCoin (YTC), an Ethereum token, has an integer overfl...

Check if your code is affected by 2018 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now