2018 CVE Vulnerabilities
17,817 CVEs published in 2018.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2018-0320 | — | — | 4.1% | Jun 7, 2018 | A vulnerability in the web framework code of Cisco Prime Collaboration Provisioning (PCP) could allow an unauthenticated... |
| CVE-2018-0319 | — | — | 3.2% | Jun 7, 2018 | A vulnerability in the password recovery function of Cisco Prime Collaboration Provisioning (PCP) could allow an unauthe... |
| CVE-2018-0318 | — | — | 3.2% | Jun 7, 2018 | A vulnerability in the password reset function of Cisco Prime Collaboration Provisioning (PCP) could allow an unauthenti... |
| CVE-2018-0317 | — | — | 2.6% | Jun 7, 2018 | A vulnerability in the web interface of Cisco Prime Collaboration Provisioning (PCP) could allow an authenticated, remot... |
| CVE-2018-0316 | — | — | 2.5% | Jun 7, 2018 | A vulnerability in the Session Initiation Protocol (SIP) call-handling functionality of Cisco IP Phone 6800, 7800, and 8... |
| CVE-2018-3739 | — | — | 2.0% | Jun 7, 2018 | https-proxy-agent before 2.1.1 passes auth option to the Buffer constructor without proper sanitization, resulting in Do... |
| CVE-2018-3736 | — | — | — | Jun 7, 2018 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2018-3739. Reason: This candidate is a duplicate of... |
| CVE-2018-3724 | — | — | 1.8% | Jun 7, 2018 | general-file-server node module suffers from a Path Traversal vulnerability due to lack of validation of currpath, which... |
| CVE-2018-3723 | — | — | 2.0% | Jun 7, 2018 | defaults-deep node module before 0.2.4 suffers from a Modification of Assumed-Immutable Data (MAID) vulnerability, which... |
| CVE-2018-3722 | — | — | 2.0% | Jun 7, 2018 | merge-deep node module before 3.0.1 suffers from a Modification of Assumed-Immutable Data (MAID) vulnerability, which al... |
| CVE-2018-3712 | — | — | 1.8% | Jun 7, 2018 | serve node module before 6.4.9 suffers from a Path Traversal vulnerability due to not handling %2e (.) and %2f (/) and a... |
| CVE-2018-5850 | — | — | 0.4% | Jun 6, 2018 | In the function csr_update_fils_params_rso(), insufficient validation on a key length can result in an integer underflow... |
| CVE-2018-5846 | — | — | 0.4% | Jun 6, 2018 | A Use After Free condition can occur in the IPA driver whenever the IPA IOCTLs IPA_IOC_NOTIFY_WAN_UPSTREAM_ROUTE_ADD/IPA... |
| CVE-2018-5845 | — | — | 0.3% | Jun 6, 2018 | A race condition in drm_atomic_nonblocking_commit() in the display driver can potentially lead to a Use After Free scena... |
| CVE-2018-5841 | — | — | 0.4% | Jun 6, 2018 | dcc_curr_list is initialized with a default invalid value that is expected to be programmed by the user through a sysfs ... |
| CVE-2018-5840 | — | — | 0.4% | Jun 6, 2018 | Buffer Copy without Checking Size of Input can occur during the DRM SDE driver initialization sequence in all Android re... |
| CVE-2018-3580 | — | — | 0.4% | Jun 6, 2018 | Stack-based buffer overflow can occur In the WLAN driver if the pmkid_count value is larger than the PMKIDCache size in ... |
| CVE-2018-3578 | — | — | 0.5% | Jun 6, 2018 | Type mismatch for ie_len can cause the WLAN driver to allocate less memory on the heap due to implicit casting leading t... |
| CVE-2018-3565 | — | — | 0.4% | Jun 6, 2018 | While sending a probe request indication in lim_send_sme_probe_req_ind() in all Android releases from CAF (Android for M... |
| CVE-2018-3562 | — | — | 0.3% | Jun 6, 2018 | Buffer over -read can occur while processing a FILS authentication frame in all Android releases from CAF (Android for M... |
| CVE-2018-7510 | — | — | 1.4% | Jun 6, 2018 | In the web application in BeaconMedaes TotalAlert Scroll Medical Air Systems running software versions prior to 41076000... |
| CVE-2018-1269 | — | — | 1.1% | Jun 6, 2018 | Cloud Foundry Loggregator, versions 89.x prior to 89.5 or 96.x prior to 96.1 or 99.x prior to 99.1 or 101.x prior to 101... |
| CVE-2018-1265 | — | — | 1.8% | Jun 6, 2018 | Cloud Foundry Diego, release versions prior to 2.8.0, does not properly sanitize file paths in tar and zip files headers... |
| CVE-2018-10198 | — | — | 1.0% | Jun 6, 2018 | An issue was discovered in OTRS 6.0.x before 6.0.7. An attacker who is logged into OTRS as a customer can use the ticket... |
| CVE-2018-1000203 | — | — | 1.0% | Jun 6, 2018 | Soar Labs Soar Coin version up to and including git commit 4a2aa71ee21014e2880a3f7aad11091ed6ad434f (latest release as o... |
Check if your code is affected by 2018 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now