2018 CVE Vulnerabilities
17,817 CVEs published in 2018.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2018-14429 | — | — | 3.7% | Aug 14, 2018 | man-cgi before 1.16 allows Local File Inclusion via absolute path traversal, as demonstrated by a cgi-bin/man-cgi?/etc/p... |
| CVE-2018-14424 | — | — | 0.5% | Aug 14, 2018 | The daemon in GDM through 3.29.1 does not properly unexport display objects from its D-Bus interface when they are destr... |
| CVE-2018-14348 | — | — | 2.3% | Aug 14, 2018 | libcgroup up to and including 0.41 creates /var/log/cgred with mode 0666 regardless of the configured umask, leading to ... |
| CVE-2018-5392 | — | — | 1.4% | Aug 14, 2018 | mingw-w64 version 5.0.4 by default produces executables that opt in to ASLR, but are not compatible with ASLR. ASLR is a... |
| CVE-2018-2451 | — | — | 1.2% | Aug 14, 2018 | XS Command-Line Interface (CLI) user sessions with the SAP HANA Extended Application Services (XS), version 1, advanced ... |
| CVE-2018-2450 | — | — | 1.7% | Aug 14, 2018 | SAP MaxDB (liveCache), versions 7.8 and 7.9, allows an attacker who gets DBM operator privileges to execute crafted data... |
| CVE-2018-2449 | — | — | 1.6% | Aug 14, 2018 | SAP SRM MDM Catalog versions 3.73, 7.31, 7.32 in (SAP NetWeaver 7.3) - import functionality does not perform authenticat... |
| CVE-2018-2448 | — | — | 1.4% | Aug 14, 2018 | Under certain conditions SAP SRM-MDM (CATALOG versions 3.0, 7.01, 7.02) utilities functionality allows an attacker to ac... |
| CVE-2018-2447 | — | — | 1.2% | Aug 14, 2018 | SAP BusinessObjects Business Intelligence (Launchpad Web Intelligence), version 4.2, allows an attacker to execute craft... |
| CVE-2018-2446 | HIGH | 7.5 | 1.7% | Aug 14, 2018 | Admin tools in SAP BusinessObjects Business Intelligence, versions 4.1, 4.2, allow an unauthenticated user to read sensi... |
| CVE-2018-2445 | — | — | 1.1% | Aug 14, 2018 | AdminTools in SAP BusinessObjects Business Intelligence, versions 4.1, 4.2, allows an attacker to manipulate the vulnera... |
| CVE-2018-2444 | — | — | 1.0% | Aug 14, 2018 | SAP BusinessObjects Financial Consolidation, versions 10.0, 10.1, does not sufficiently encode user-controlled inputs, r... |
| CVE-2018-2442 | — | — | 0.7% | Aug 14, 2018 | In SAP BusinessObjects Business Intelligence, versions 4.0, 4.1 and 4.2, while viewing a Web Intelligence report from BI... |
| CVE-2018-2441 | — | — | 1.0% | Aug 14, 2018 | Under certain conditions the SAP Change and Transport System (ABAP), SAP KERNEL 32 NUC, SAP KERNEL 32 Unicode, SAP KERNE... |
| CVE-2018-0131 | — | — | 1.7% | Aug 14, 2018 | A vulnerability in the implementation of RSA-encrypted nonces in Cisco IOS Software and Cisco IOS XE Software could allo... |
| CVE-2018-7100 | — | — | 0.5% | Aug 14, 2018 | A potential security vulnerability has been identified in HPE OfficeConnect 1810 Switch Series (HP 1810-24G - P.2.22 and... |
| CVE-2018-7099 | — | — | 0.4% | Aug 14, 2018 | A security vulnerability was identified in 3PAR Service Processor (SP) prior to SP-4.4.0.GA-110(MU7). The vulnerability ... |
| CVE-2018-7098 | — | — | 0.7% | Aug 14, 2018 | A security vulnerability was identified in 3PAR Service Processor (SP) prior to SP-4.4.0.GA-110(MU7). The vulnerability ... |
| CVE-2018-7097 | — | — | 0.7% | Aug 14, 2018 | A security vulnerability was identified in 3PAR Service Processor (SP) prior to SP-4.4.0.GA-110(MU7). The vulnerability ... |
| CVE-2018-7096 | — | — | 3.3% | Aug 14, 2018 | A security vulnerability was identified in 3PAR Service Processor (SP) prior to SP-4.4.0.GA-110(MU7). The vulnerability ... |
| CVE-2018-7095 | — | — | 2.2% | Aug 14, 2018 | A security vulnerability was identified in 3PAR Service Processor (SP) prior to SP-4.4.0.GA-110(MU7). The vulnerability ... |
| CVE-2018-7094 | — | — | 0.4% | Aug 14, 2018 | A security vulnerability was identified in 3PAR Service Processor (SP) prior to SP-5.0.0.0-22913(GA). The vulnerability ... |
| CVE-2018-7093 | — | — | 3.5% | Aug 14, 2018 | A security vulnerability in HPE Integrated Lights-Out 3 prior to v1.90, iLO 4 prior to v2.60, iLO 5 prior to v1.30, Moon... |
| CVE-2018-7077 | — | — | 2.4% | Aug 14, 2018 | A security vulnerability in HPE XP P9000 Command View Advanced Edition (CVAE) Device Manager (DevMgr 8.5.0-00 and prior ... |
| CVE-2018-6970 | — | — | 1.8% | Aug 13, 2018 | VMware Horizon 6 (6.x.x before 6.2.7), Horizon 7 (7.x.x before 7.5.1), and Horizon Client (4.x.x and prior before 4.8.1)... |
Check if your code is affected by 2018 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now