2018 CVE Vulnerabilities
17,817 CVEs published in 2018.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2018-0047 | HIGH | 8 | 0.9% | Oct 10, 2018 | A persistent cross-site scripting vulnerability in the UI framework used by Junos Space Security Director may allow auth... |
| CVE-2018-0046 | HIGH | 8.8 | 1.6% | Oct 10, 2018 | A reflected cross-site scripting vulnerability in OpenNMS included with Juniper Networks Junos Space may allow the steal... |
| CVE-2018-0045 | HIGH | 8.8 | 1.1% | Oct 10, 2018 | Receipt of a specific Draft-Rosen MVPN control packet may cause the routing protocol daemon (RPD) process to crash and r... |
| CVE-2018-0043 | HIGH | 8.8 | 1.2% | Oct 10, 2018 | Receipt of a specific MPLS packet may cause the routing protocol daemon (RPD) process to crash and restart or may lead t... |
| CVE-2018-8493 | HIGH | 7.5 | 8.4% | Oct 10, 2018 | An information disclosure vulnerability exists when the Windows TCP/IP stack improperly handles fragmented IP packets, a... |
| CVE-2018-8453 | HIGH | 7.8 | 70.0% | Oct 10, 2018 | An elevation of privilege vulnerability exists in Windows when the Win32k component fails to properly handle objects in ... |
| CVE-2018-17958 | HIGH | 7.5 | 6.2% | Oct 9, 2018 | Qemu has a Buffer Overflow in rtl8139_do_receive in hw/net/rtl8139.c because an incorrect integer data type is used. |
| CVE-2018-18074 | HIGH | 7.5 | 7.4% | Oct 9, 2018 | The Requests package before 2.20.0 for Python sends an HTTP Authorization header to an http URI upon receiving a same-ho... |
| CVE-2018-14656 | HIGH | 7 | 0.5% | Oct 8, 2018 | A missing address check in the callers of the show_opcodes() in the Linux kernel allows an attacker to dump the kernel m... |
| CVE-2018-18066 | HIGH | 7.5 | 4.3% | Oct 8, 2018 | snmp_oid_compare in snmplib/snmp_api.c in Net-SNMP before 5.8 has a NULL Pointer Exception bug that can be used by an un... |
| CVE-2018-3997 | HIGH | 8.8 | 3.0% | Oct 8, 2018 | An exploitable use-after-free vulnerability exists in the JavaScript engine of Foxit Software's Foxit PDF Reader, versio... |
| CVE-2018-3996 | HIGH | 8.8 | 3.2% | Oct 8, 2018 | An exploitable use-after-free vulnerability exists in the JavaScript engine of Foxit Software's PDF Reader, version 9.2.... |
| CVE-2018-3992 | HIGH | 8.8 | 2.8% | Oct 8, 2018 | An exploitable use-after-free vulnerability exists in the JavaScript engine of Foxit Software's Foxit PDF Reader, versio... |
| CVE-2018-3945 | HIGH | 8.8 | 3.2% | Oct 8, 2018 | An exploitable use-after-free vulnerability exists in the JavaScript engine of Foxit Software's Foxit PDF Reader version... |
| CVE-2018-3942 | HIGH | 8.8 | 3.2% | Oct 8, 2018 | An exploitable use-after-free vulnerability exists in the JavaScript engine of Foxit Software's PDF Reader, version 9.1.... |
| CVE-2018-3941 | HIGH | 8.8 | 3.2% | Oct 8, 2018 | An exploitable use-after-free vulnerability exists in the JavaScript engine of Foxit Software's Foxit PDF Reader version... |
| CVE-2018-3940 | HIGH | 8.8 | 2.1% | Oct 8, 2018 | An exploitable use-after-free vulnerability exists in the JavaScript engine of Foxit Software's PDF Reader, version 9.1.... |
| CVE-2018-1000807 | HIGH | 8.1 | 4.1% | Oct 8, 2018 | Python Cryptographic Authority pyopenssl version prior to version 17.5.0 contains a CWE-416: Use After Free vulnerabilit... |
| CVE-2018-1000805 | HIGH | 8.8 | 4.4% | Oct 8, 2018 | Paramiko version 2.4.1, 2.3.2, 2.2.3, 2.1.5, 2.0.8, 1.18.5, 1.17.6 contains a Incorrect Access Control vulnerability in ... |
| CVE-2018-11083 | HIGH | 8.1 | 1.5% | Oct 5, 2018 | Cloud Foundry BOSH, versions v264 prior to v264.14.0 and v265 prior to v265.7.0 and v266 prior to v266.8.0 and v267 prio... |
| CVE-2018-11081 | HIGH | 7.9 | 1.4% | Oct 5, 2018 | Pivotal Operations Manager, versions 2.2.x prior to 2.2.1, 2.1.x prior to 2.1.11, 2.0.x prior to 2.0.16, and 1.11.x prio... |
| CVE-2018-11064 | HIGH | 7.8 | 0.4% | Oct 5, 2018 | Dell EMC Unity OE versions 4.3.0.x and 4.3.1.x and UnityVSA OE versions 4.3.0.x and 4.3.1.x contains an Incorrect File P... |
| CVE-2018-15431 | HIGH | 7.3 | 0.5% | Oct 5, 2018 | A vulnerability in the Cisco Webex Network Recording Player for Microsoft Windows and the Cisco Webex Player for Microso... |
| CVE-2018-15422 | HIGH | 7.8 | 2.0% | Oct 5, 2018 | A vulnerability in the Cisco Webex Network Recording Player for Microsoft Windows and the Cisco Webex Player for Microso... |
| CVE-2018-15421 | HIGH | 7.8 | 2.0% | Oct 5, 2018 | A vulnerability in the Cisco Webex Network Recording Player for Microsoft Windows and the Cisco Webex Player for Microso... |
Check if your code is affected by 2018 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now