2018 CVE Vulnerabilities

17,817 CVEs published in 2018.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2018-0320A vulnerability in the web framework code of Cisco Prime Collaboration Provisioning (PCP) could allow an unauthenticated...
CVE-2018-0319A vulnerability in the password recovery function of Cisco Prime Collaboration Provisioning (PCP) could allow an unauthe...
CVE-2018-0318A vulnerability in the password reset function of Cisco Prime Collaboration Provisioning (PCP) could allow an unauthenti...
CVE-2018-0317A vulnerability in the web interface of Cisco Prime Collaboration Provisioning (PCP) could allow an authenticated, remot...
CVE-2018-0316A vulnerability in the Session Initiation Protocol (SIP) call-handling functionality of Cisco IP Phone 6800, 7800, and 8...
CVE-2018-3739https-proxy-agent before 2.1.1 passes auth option to the Buffer constructor without proper sanitization, resulting in Do...
CVE-2018-3736Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2018-3739. Reason: This candidate is a duplicate of...
CVE-2018-3724general-file-server node module suffers from a Path Traversal vulnerability due to lack of validation of currpath, which...
CVE-2018-3723defaults-deep node module before 0.2.4 suffers from a Modification of Assumed-Immutable Data (MAID) vulnerability, which...
CVE-2018-3722merge-deep node module before 3.0.1 suffers from a Modification of Assumed-Immutable Data (MAID) vulnerability, which al...
CVE-2018-3712serve node module before 6.4.9 suffers from a Path Traversal vulnerability due to not handling %2e (.) and %2f (/) and a...
CVE-2018-5850In the function csr_update_fils_params_rso(), insufficient validation on a key length can result in an integer underflow...
CVE-2018-5846A Use After Free condition can occur in the IPA driver whenever the IPA IOCTLs IPA_IOC_NOTIFY_WAN_UPSTREAM_ROUTE_ADD/IPA...
CVE-2018-5845A race condition in drm_atomic_nonblocking_commit() in the display driver can potentially lead to a Use After Free scena...
CVE-2018-5841dcc_curr_list is initialized with a default invalid value that is expected to be programmed by the user through a sysfs ...
CVE-2018-5840Buffer Copy without Checking Size of Input can occur during the DRM SDE driver initialization sequence in all Android re...
CVE-2018-3580Stack-based buffer overflow can occur In the WLAN driver if the pmkid_count value is larger than the PMKIDCache size in ...
CVE-2018-3578Type mismatch for ie_len can cause the WLAN driver to allocate less memory on the heap due to implicit casting leading t...
CVE-2018-3565While sending a probe request indication in lim_send_sme_probe_req_ind() in all Android releases from CAF (Android for M...
CVE-2018-3562Buffer over -read can occur while processing a FILS authentication frame in all Android releases from CAF (Android for M...
CVE-2018-7510In the web application in BeaconMedaes TotalAlert Scroll Medical Air Systems running software versions prior to 41076000...
CVE-2018-1269Cloud Foundry Loggregator, versions 89.x prior to 89.5 or 96.x prior to 96.1 or 99.x prior to 99.1 or 101.x prior to 101...
CVE-2018-1265Cloud Foundry Diego, release versions prior to 2.8.0, does not properly sanitize file paths in tar and zip files headers...
CVE-2018-10198An issue was discovered in OTRS 6.0.x before 6.0.7. An attacker who is logged into OTRS as a customer can use the ticket...
CVE-2018-1000203Soar Labs Soar Coin version up to and including git commit 4a2aa71ee21014e2880a3f7aad11091ed6ad434f (latest release as o...

Check if your code is affected by 2018 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now