2018 CVE Vulnerabilities

17,817 CVEs published in 2018.

CVE IDSeverityCVSSDescription
CVE-2018-14791HIGH7.8Emerson DeltaV DCS versions 11.3.1, 12.3.1, 13.3.0, 13.3.1, R5 may allow non-administrative users to change executable a...
CVE-2018-14786Becton, Dickinson and Company (BD) Alaris Plus medical syringe pumps (models Alaris GS, Alaris GH, Alaris CC, and Alaris...
CVE-2018-1159Mikrotik RouterOS before 6.42.7 and 6.40.9 is vulnerable to a memory corruption vulnerability. An authenticated remote a...
CVE-2018-1158Mikrotik RouterOS before 6.42.7 and 6.40.9 is vulnerable to a stack exhaustion vulnerability. An authenticated remote at...
CVE-2018-1157Mikrotik RouterOS before 6.42.7 and 6.40.9 is vulnerable to a memory exhaustion vulnerability. An authenticated remote a...
CVE-2018-1156Mikrotik RouterOS before 6.42.7 and 6.40.9 is vulnerable to stack buffer overflow through the license upgrade interface....
CVE-2018-3912HIGH7.8On Samsung SmartThings Hub STH-ETH-250 devices with firmware version 0.20.17, the video-core process insecurely extracts...
CVE-2018-1999047A improper authorization vulnerability exists in Jenkins 2.137 and earlier, 2.121.2 and earlier in UpdateCenter.java tha...
CVE-2018-1999046A exposure of sensitive information vulnerability exists in Jenkins 2.137 and earlier, 2.121.2 and earlier in Computer.j...
CVE-2018-1999045A improper authentication vulnerability exists in Jenkins 2.137 and earlier, 2.121.2 and earlier in SecurityRealm.java, ...
CVE-2018-1999044A denial of service vulnerability exists in Jenkins 2.137 and earlier, 2.121.2 and earlier in CronTab.java that allows a...
CVE-2018-1999043A denial of service vulnerability exists in Jenkins 2.137 and earlier, 2.121.2 and earlier in BasicAuthenticationFilter....
CVE-2018-1999042A vulnerability exists in Jenkins 2.137 and earlier, 2.121.2 and earlier in XStream2.java that allows attackers to have ...
CVE-2018-15804An issue was discovered in the MapR File System in MapR Converged Data Platform and MapR-XD 6.x and earlier. Under certa...
CVE-2018-8028An authenticated user can execute ALTER TABLE EXCHANGE PARTITIONS without being authorized by Apache Sentry before 2.0.1...
CVE-2018-3925HIGH8.5An exploitable buffer overflow vulnerability exists in the remote video-host communication of video-core's HTTP server o...
CVE-2018-3919CRITICAL9.9An exploitable stack-based buffer overflow vulnerability exists in the retrieval of database fields in video-core's HTTP...
CVE-2018-3917CRITICAL9.9On Samsung SmartThings Hub STH-ETH-250 devices with firmware version 0.20.17, the video-core process insecurely extracts...
CVE-2018-3905CRITICAL9.9An exploitable buffer overflow vulnerability exists in the camera "create" feature of video-core's HTTP server of Samsun...
CVE-2018-3903CRITICAL9.9On Samsung SmartThings Hub STH-ETH-250 devices with firmware version 0.20.17, the video-core process incorrectly extract...
CVE-2018-3902CRITICAL9.9An exploitable buffer overflow vulnerability exists in the camera "replace" feature of video-core's HTTP server of Samsu...
CVE-2018-3879HIGH8.8An exploitable JSON injection vulnerability exists in the credentials handler of video-core's HTTP server of Samsung Sma...
CVE-2018-3878CRITICAL9.9Multiple exploitable buffer overflow vulnerabilities exist in the credentials handler of video-core's HTTP server of Sam...
CVE-2018-3867CRITICAL9.9An exploitable stack-based buffer overflow vulnerability exists in the samsungWifiScan callback notification of video-co...
CVE-2018-3863CRITICAL9.9On Samsung SmartThings Hub STH-ETH-250 devices with firmware version 0.20.17, the video-core process incorrectly extract...

Check if your code is affected by 2018 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now