2018 CVE Vulnerabilities
17,817 CVEs published in 2018.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2018-14791 | HIGH | 7.8 | 0.4% | Aug 23, 2018 | Emerson DeltaV DCS versions 11.3.1, 12.3.1, 13.3.0, 13.3.1, R5 may allow non-administrative users to change executable a... |
| CVE-2018-14786 | — | — | 3.1% | Aug 23, 2018 | Becton, Dickinson and Company (BD) Alaris Plus medical syringe pumps (models Alaris GS, Alaris GH, Alaris CC, and Alaris... |
| CVE-2018-1159 | — | — | 2.5% | Aug 23, 2018 | Mikrotik RouterOS before 6.42.7 and 6.40.9 is vulnerable to a memory corruption vulnerability. An authenticated remote a... |
| CVE-2018-1158 | — | — | 2.5% | Aug 23, 2018 | Mikrotik RouterOS before 6.42.7 and 6.40.9 is vulnerable to a stack exhaustion vulnerability. An authenticated remote at... |
| CVE-2018-1157 | — | — | 4.4% | Aug 23, 2018 | Mikrotik RouterOS before 6.42.7 and 6.40.9 is vulnerable to a memory exhaustion vulnerability. An authenticated remote a... |
| CVE-2018-1156 | — | — | 7.4% | Aug 23, 2018 | Mikrotik RouterOS before 6.42.7 and 6.40.9 is vulnerable to stack buffer overflow through the license upgrade interface.... |
| CVE-2018-3912 | HIGH | 7.8 | 0.4% | Aug 23, 2018 | On Samsung SmartThings Hub STH-ETH-250 devices with firmware version 0.20.17, the video-core process insecurely extracts... |
| CVE-2018-1999047 | — | — | 0.8% | Aug 23, 2018 | A improper authorization vulnerability exists in Jenkins 2.137 and earlier, 2.121.2 and earlier in UpdateCenter.java tha... |
| CVE-2018-1999046 | — | — | 1.3% | Aug 23, 2018 | A exposure of sensitive information vulnerability exists in Jenkins 2.137 and earlier, 2.121.2 and earlier in Computer.j... |
| CVE-2018-1999045 | — | — | 0.9% | Aug 23, 2018 | A improper authentication vulnerability exists in Jenkins 2.137 and earlier, 2.121.2 and earlier in SecurityRealm.java, ... |
| CVE-2018-1999044 | — | — | 1.2% | Aug 23, 2018 | A denial of service vulnerability exists in Jenkins 2.137 and earlier, 2.121.2 and earlier in CronTab.java that allows a... |
| CVE-2018-1999043 | — | — | 1.7% | Aug 23, 2018 | A denial of service vulnerability exists in Jenkins 2.137 and earlier, 2.121.2 and earlier in BasicAuthenticationFilter.... |
| CVE-2018-1999042 | — | — | 1.5% | Aug 23, 2018 | A vulnerability exists in Jenkins 2.137 and earlier, 2.121.2 and earlier in XStream2.java that allows attackers to have ... |
| CVE-2018-15804 | — | — | 1.0% | Aug 23, 2018 | An issue was discovered in the MapR File System in MapR Converged Data Platform and MapR-XD 6.x and earlier. Under certa... |
| CVE-2018-8028 | — | — | 1.3% | Aug 23, 2018 | An authenticated user can execute ALTER TABLE EXCHANGE PARTITIONS without being authorized by Apache Sentry before 2.0.1... |
| CVE-2018-3925 | HIGH | 8.5 | 1.5% | Aug 23, 2018 | An exploitable buffer overflow vulnerability exists in the remote video-host communication of video-core's HTTP server o... |
| CVE-2018-3919 | CRITICAL | 9.9 | 0.9% | Aug 23, 2018 | An exploitable stack-based buffer overflow vulnerability exists in the retrieval of database fields in video-core's HTTP... |
| CVE-2018-3917 | CRITICAL | 9.9 | 0.9% | Aug 23, 2018 | On Samsung SmartThings Hub STH-ETH-250 devices with firmware version 0.20.17, the video-core process insecurely extracts... |
| CVE-2018-3905 | CRITICAL | 9.9 | 1.5% | Aug 23, 2018 | An exploitable buffer overflow vulnerability exists in the camera "create" feature of video-core's HTTP server of Samsun... |
| CVE-2018-3903 | CRITICAL | 9.9 | 1.8% | Aug 23, 2018 | On Samsung SmartThings Hub STH-ETH-250 devices with firmware version 0.20.17, the video-core process incorrectly extract... |
| CVE-2018-3902 | CRITICAL | 9.9 | 1.8% | Aug 23, 2018 | An exploitable buffer overflow vulnerability exists in the camera "replace" feature of video-core's HTTP server of Samsu... |
| CVE-2018-3879 | HIGH | 8.8 | 1.6% | Aug 23, 2018 | An exploitable JSON injection vulnerability exists in the credentials handler of video-core's HTTP server of Samsung Sma... |
| CVE-2018-3878 | CRITICAL | 9.9 | 1.5% | Aug 23, 2018 | Multiple exploitable buffer overflow vulnerabilities exist in the credentials handler of video-core's HTTP server of Sam... |
| CVE-2018-3867 | CRITICAL | 9.9 | 2.0% | Aug 23, 2018 | An exploitable stack-based buffer overflow vulnerability exists in the samsungWifiScan callback notification of video-co... |
| CVE-2018-3863 | CRITICAL | 9.9 | 1.7% | Aug 23, 2018 | On Samsung SmartThings Hub STH-ETH-250 devices with firmware version 0.20.17, the video-core process incorrectly extract... |
Check if your code is affected by 2018 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now