2018 CVE Vulnerabilities
17,817 CVEs published in 2018.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2018-16971 | — | — | 0.6% | Sep 12, 2018 | Wisetail Learning Ecosystem (LE) through v4.11.6 allows insecure direct object reference (IDOR) attacks to access non-pu... |
| CVE-2018-16970 | — | — | 0.7% | Sep 12, 2018 | Wisetail Learning Ecosystem (LE) through v4.11.6 allows insecure direct object reference (IDOR) attacks to download non-... |
| CVE-2018-16962 | — | — | 0.5% | Sep 12, 2018 | Webroot SecureAnywhere before 9.0.8.34 on macOS mishandles access to the driver by a process that lacks root privileges. |
| CVE-2018-3686 | — | — | 0.4% | Sep 12, 2018 | Code injection vulnerability in INTEL-SA-00086 Detection Tool before version 1.2.7.0 may allow a privileged user to pote... |
| CVE-2018-3679 | — | — | 1.2% | Sep 12, 2018 | Escalation of privilege in Reference UI in Intel Data Center Manager SDK 5.0 and before may allow an unauthorized remote... |
| CVE-2018-3669 | — | — | 1.1% | Sep 12, 2018 | A STOP error (BSoD) in the ibtfltcoex.sys driver for Intel Centrino Wireless N and Intel Centrino Advanced N adapters ma... |
| CVE-2018-3659 | — | — | 0.4% | Sep 12, 2018 | A vulnerability in Intel PTT module in Intel CSME firmware before version 12.0.5 and Intel TXE firmware before version 4... |
| CVE-2018-3658 | MEDIUM | 5.3 | 3.3% | Sep 12, 2018 | Multiple memory leaks in Intel AMT in Intel CSME firmware versions before 12.0.5 may allow an unauthenticated user with ... |
| CVE-2018-3657 | MEDIUM | 6.7 | 0.6% | Sep 12, 2018 | Multiple buffer overflows in Intel AMT in Intel CSME firmware versions before version 12.0.5 may allow a privileged user... |
| CVE-2018-3655 | — | — | 0.4% | Sep 12, 2018 | A vulnerability in a subsystem in Intel CSME before version 11.21.55, Intel Server Platform Services before version 4.0 ... |
| CVE-2018-3643 | — | — | 0.5% | Sep 12, 2018 | A vulnerability in Power Management Controller firmware in systems using specific Intel(R) Converged Security and Manage... |
| CVE-2018-3616 | MEDIUM | 5.9 | 2.4% | Sep 12, 2018 | Bleichenbacher-style side channel vulnerability in TLS implementation in Intel Active Management Technology before 12.0.... |
| CVE-2018-12176 | — | — | 0.4% | Sep 12, 2018 | Improper input validation in firmware for Intel NUC Kits may allow a privileged user to potentially execute arbitrary co... |
| CVE-2018-12175 | — | — | 0.3% | Sep 12, 2018 | Default install directory permissions in Intel Distribution for Python (IDP) version 2018 may allow an unprivileged user... |
| CVE-2018-12171 | — | — | 2.1% | Sep 12, 2018 | Privilege escalation in Intel Baseboard Management Controller (BMC) firmware before version 1.43.91f76955 may allow an u... |
| CVE-2018-12168 | — | — | 0.3% | Sep 12, 2018 | Privilege escalation in file permissions in Intel Computing Improvement Program before version 2.2.0.03942 may allow an ... |
| CVE-2018-12163 | — | — | 0.5% | Sep 12, 2018 | A DLL injection vulnerability in the Intel IoT Developers Kit 4.0 installer may allow an authenticated user to potential... |
| CVE-2018-12162 | — | — | 0.3% | Sep 12, 2018 | Directory permissions in the Intel OpenVINO Toolkit for Windows before version 2018.1.265 may allow an authenticated use... |
| CVE-2018-12160 | — | — | 0.4% | Sep 12, 2018 | DLL injection vulnerability in software installer for Intel Data Center Migration Center Software v3.1 and before may al... |
| CVE-2018-12151 | — | — | 0.3% | Sep 12, 2018 | Buffer overflow in installer for Intel Extreme Tuning Utility before 6.4.1.21 may allow an authenticated user to potenti... |
| CVE-2018-12150 | — | — | 0.4% | Sep 12, 2018 | Escalation of privilege in Installer for Intel Extreme Tuning Utility before 6.4.1.21 may allow an authenticated user to... |
| CVE-2018-12149 | — | — | 0.3% | Sep 12, 2018 | Buffer overflow in input handling in Intel Extreme Tuning Utility before 6.4.1.21 may allow an authenticated user to pot... |
| CVE-2018-12148 | — | — | 0.3% | Sep 12, 2018 | Privilege escalation in file permissions in Intel Driver and Support Assistant before 3.5.0.1 may allow an authenticated... |
| CVE-2018-7572 | — | — | 0.4% | Sep 12, 2018 | Pulse Secure Client 9.0R1 and 5.3RX before 5.3R5, when configured to authenticate VPN users during Windows Logon, can al... |
| CVE-2018-16729 | — | — | 0.6% | Sep 12, 2018 | Pluck 4.7.7 allows XSS via an SVG file that contains Javascript in a SCRIPT element, and is uploaded via pages->manage u... |
Check if your code is affected by 2018 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now