2018 CVE Vulnerabilities
17,817 CVEs published in 2018.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2018-11448 | — | — | 0.3% | Jun 26, 2018 | A vulnerability has been identified in SCALANCE M875 (All versions). The web interface on port 443/tcp could allow a sto... |
| CVE-2018-11447 | — | — | 0.6% | Jun 26, 2018 | A vulnerability has been identified in SCALANCE M875 (All versions). The web interface on port 443/tcp could allow a Cro... |
| CVE-2018-10664 | — | — | 1.5% | Jun 26, 2018 | An issue was discovered in the httpd process in multiple models of Axis IP Cameras. There is Memory Corruption. |
| CVE-2018-10663 | — | — | 1.5% | Jun 26, 2018 | An issue was discovered in multiple models of Axis IP Cameras. There is an Incorrect Size Calculation. |
| CVE-2018-10662 | — | — | 79.8% | Jun 26, 2018 | An issue was discovered in multiple models of Axis IP Cameras. There is an Exposed Insecure Interface. |
| CVE-2018-10661 | — | — | 86.7% | Jun 26, 2018 | An issue was discovered in multiple models of Axis IP Cameras. There is a bypass of access control. |
| CVE-2018-10660 | — | — | 82.2% | Jun 26, 2018 | An issue was discovered in multiple models of Axis IP Cameras. There is Shell Command Injection. |
| CVE-2018-10659 | — | — | 1.8% | Jun 26, 2018 | There was a Memory Corruption issue discovered in multiple models of Axis IP Cameras which allows remote attackers to ca... |
| CVE-2018-10658 | — | — | 1.5% | Jun 26, 2018 | There was a Memory Corruption issue discovered in multiple models of Axis IP Cameras which causes a denial of service (c... |
| CVE-2018-1000610 | — | — | 0.9% | Jun 26, 2018 | A exposure of sensitive information vulnerability exists in Jenkins Configuration as Code Plugin 0.7-alpha and earlier i... |
| CVE-2018-1000609 | — | — | 1.0% | Jun 26, 2018 | A exposure of sensitive information vulnerability exists in Jenkins Configuration as Code Plugin 0.7-alpha and earlier i... |
| CVE-2018-1000608 | — | — | 1.0% | Jun 26, 2018 | A exposure of sensitive information vulnerability exists in Jenkins z/OS Connector Plugin 1.2.6.1 and earlier in SCLMSCM... |
| CVE-2018-1000607 | — | — | 0.9% | Jun 26, 2018 | A arbitrary file write vulnerability exists in Jenkins Fortify CloudScan Plugin 1.5.1 and earlier in ArchiveUtil.java th... |
| CVE-2018-1000606 | — | — | 0.7% | Jun 26, 2018 | A server-side request forgery vulnerability exists in Jenkins URLTrigger Plugin 0.41 and earlier in URLTrigger.java that... |
| CVE-2018-1000605 | — | — | 0.9% | Jun 26, 2018 | A man in the middle vulnerability exists in Jenkins CollabNet Plugin 2.0.4 and earlier in CollabNetApp.java, CollabNetPl... |
| CVE-2018-1000604 | — | — | 0.7% | Jun 26, 2018 | A persisted cross-site scripting vulnerability exists in Jenkins Badge Plugin 1.4 and earlier in BadgeSummaryAction.java... |
| CVE-2018-1000603 | — | — | 1.0% | Jun 26, 2018 | A exposure of sensitive information vulnerability exists in Jenkins Openstack Cloud Plugin 2.35 and earlier in BootSourc... |
| CVE-2018-1000602 | — | — | 0.9% | Jun 26, 2018 | A session fixation vulnerability exists in Jenkins SAML Plugin 1.0.6 and earlier in SamlSecurityRealm.java that allows u... |
| CVE-2018-1000601 | — | — | 1.0% | Jun 26, 2018 | A arbitrary file read vulnerability exists in Jenkins SSH Credentials Plugin 1.13 and earlier in BasicSSHUserPrivateKey.... |
| CVE-2018-1000600 | — | — | 90.9% | Jun 26, 2018 | A exposure of sensitive information vulnerability exists in Jenkins GitHub Plugin 1.29.1 and earlier in GitHubTokenCrede... |
| CVE-2018-1000559 | — | — | 1.5% | Jun 26, 2018 | qutebrowser version introduced in v0.11.0 (1179ee7a937fb31414d77d9970bac21095358449) contains a Cross Site Scripting (XS... |
| CVE-2018-1000558 | — | — | 1.0% | Jun 26, 2018 | OCS Inventory NG ocsreports 2.4 and ocsreports 2.3.1 version 2.4 and 2.3.1 contains a SQL Injection vulnerability in web... |
| CVE-2018-1000557 | — | — | 0.7% | Jun 26, 2018 | OCS Inventory OCS Inventory NG version ocsreports 2.4 contains a Cross Site Scripting (XSS) vulnerability in login form ... |
| CVE-2018-1000556 | — | — | 0.7% | Jun 26, 2018 | WordPress version 4.8 + contains a Cross Site Scripting (XSS) vulnerability in plugins.php or core wordpress on delete f... |
| CVE-2018-1000554 | — | — | 1.2% | Jun 26, 2018 | Trovebox version <= 4.0.0-rc6 contains a Unsafe password reset token generation vulnerability in user component that can... |
Check if your code is affected by 2018 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now