2018 CVE Vulnerabilities
17,817 CVEs published in 2018.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2018-6259 | — | — | 0.2% | Aug 31, 2018 | NVIDIA GeForce Experience all versions prior to 3.14.1 contains a potential vulnerability when GameStream is enabled, an... |
| CVE-2018-6258 | — | — | 0.3% | Aug 31, 2018 | NVIDIA GeForce Experience all versions prior to 3.14.1 contains a potential vulnerability during GameStream installation... |
| CVE-2018-6257 | — | — | 0.3% | Aug 31, 2018 | NVIDIA GeForce Experience all versions prior to 3.14.1 contains a potential vulnerability when GameStream is enabled whe... |
| CVE-2018-11057 | MEDIUM | 5.9 | 1.7% | Aug 31, 2018 | RSA BSAFE Micro Edition Suite, versions prior to 4.0.11 (in 4.0.x) and prior to 4.1.6.1 (in 4.1.x) contains a Covert Tim... |
| CVE-2018-11056 | MEDIUM | 6.5 | 1.9% | Aug 31, 2018 | RSA BSAFE Micro Edition Suite, prior to 4.1.6.1 (in 4.1.x), and RSA BSAFE Crypto-C Micro Edition versions prior to 4.0.5... |
| CVE-2018-11055 | MEDIUM | 5.5 | 0.4% | Aug 31, 2018 | RSA BSAFE Micro Edition Suite, versions prior to 4.0.11 (in 4.0.x) and prior to 4.1.6.1 (in 4.1.x), contains an Improper... |
| CVE-2018-11054 | HIGH | 7.5 | 3.2% | Aug 31, 2018 | RSA BSAFE Micro Edition Suite, version 4.1.6, contains an integer overflow vulnerability. A remote attacker could use ma... |
| CVE-2018-3787 | HIGH | 7.5 | 2.0% | Aug 31, 2018 | Path traversal in simplehttpserver <v0.2.1 allows listing any file on the server. |
| CVE-2018-16278 | — | — | 1.6% | Aug 31, 2018 | phpkaiyuancms PhpOpenSourceCMS (POSCMS) V3.2.0 allows an unauthenticated user to execute arbitrary SQL commands via the ... |
| CVE-2018-16276 | HIGH | 7.8 | 0.4% | Aug 31, 2018 | An issue was discovered in yurex_read in drivers/usb/misc/yurex.c in the Linux kernel before 4.17.7. Local attackers cou... |
| CVE-2018-7685 | HIGH | 7.8 | 0.3% | Aug 31, 2018 | The decoupled download and installation steps in libzypp before 17.5.0 could lead to a corrupted RPM being left in the c... |
| CVE-2018-16275 | — | — | 0.9% | Aug 31, 2018 | OPSWAT MetaDefender before v4.11.2 allows CSV injection. |
| CVE-2018-16239 | — | — | 1.2% | Aug 30, 2018 | An issue was discovered in damiCMS V6.0.1. It relies on the PHP time() function for cookies, which makes it possible to ... |
| CVE-2018-16238 | — | — | 2.2% | Aug 30, 2018 | An issue was discovered in damiCMS V6.0.1. Remote code execution can occur via PHP code in a multipart/form-data POST to... |
| CVE-2018-16237 | — | — | 1.2% | Aug 30, 2018 | An issue was discovered in damiCMS V6.0.1. There is Directory Traversal via '|' characters in the s parameter to admin.p... |
| CVE-2018-16236 | — | — | 0.7% | Aug 30, 2018 | cPanel through 74 allows XSS via a crafted filename in the logs subdirectory of a user account, because the filename is ... |
| CVE-2018-16234 | — | — | 0.8% | Aug 30, 2018 | MorningStar WhatWeb 0.4.9 has XSS via JSON report files. |
| CVE-2018-16233 | — | — | 0.9% | Aug 30, 2018 | MiniCMS V1.10 has XSS via the mc-admin/post-edit.php tags parameter. |
| CVE-2018-16231 | — | — | 1.3% | Aug 30, 2018 | Michael Roth Software Personal FTP Server (PFTP) through 8.4f allows remote attackers to cause a denial of service (daem... |
| CVE-2018-6499 | HIGH | 7.1 | 2.4% | Aug 30, 2018 | Remote Code Execution in the following products Hybrid Cloud Management Containerized Suite HCM2017.11, HCM2018.02, HCM2... |
| CVE-2018-6498 | HIGH | 8.8 | 3.1% | Aug 30, 2018 | Remote Code Execution in the following products Hybrid Cloud Management Containerized Suite HCM2017.11, HCM2018.02, HCM2... |
| CVE-2018-15364 | — | — | 2.1% | Aug 30, 2018 | A Named Pipe Request Processing Out-of-Bounds Read Information Disclosure vulnerability in Trend Micro OfficeScan XG (12... |
| CVE-2018-15363 | — | — | 0.5% | Aug 30, 2018 | An Out-of-Bounds Read Privilege Escalation vulnerability in Trend Micro Security 2018 (Consumer) products could allow a ... |
| CVE-2018-10514 | — | — | 0.4% | Aug 30, 2018 | A Missing Impersonation Privilege Escalation vulnerability in Trend Micro Security 2018 (Consumer) products could allow ... |
| CVE-2018-10513 | — | — | 0.8% | Aug 30, 2018 | A Deserialization of Untrusted Data Privilege Escalation vulnerability in Trend Micro Security 2018 (Consumer) products ... |
Check if your code is affected by 2018 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now