2018 CVE Vulnerabilities
17,817 CVEs published in 2018.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2018-17792 | — | — | 1.0% | Jul 19, 2019 | MDaemon Webmail (formerly WorldClient) has CSRF. |
| CVE-2018-13442 | — | — | 1.7% | Jul 16, 2019 | SolarWinds Network Performance Monitor 12.3 allows SQL Injection via the /api/ActiveAlertsOnThisEntity/GetActiveAlerts T... |
| CVE-2018-19629 | — | — | 1.5% | Jul 16, 2019 | A Denial of Service vulnerability in the ImageNow Server service in Hyland Perceptive Content Server before 7.1.5 allows... |
| CVE-2018-20852 | — | — | 3.9% | Jul 13, 2019 | http.cookiejar.DefaultPolicy.domain_return_ok in Lib/http/cookiejar.py in Python before 3.7.3 does not correctly validat... |
| CVE-2018-18095 | — | — | 0.5% | Jul 11, 2019 | Improper authentication in firmware for Intel(R) SSD DC S4500 Series and Intel(R) SSD DC S4600 Series before SCV10150 ma... |
| CVE-2018-17196 | — | — | 5.5% | Jul 11, 2019 | In Apache Kafka versions between 0.11.0.0 and 2.1.0, it is possible to manually craft a Produce request which bypasses t... |
| CVE-2018-19588 | — | — | 1.7% | Jul 11, 2019 | Alarm.com ADC-V522IR 0100b9 devices have Incorrect Access Control. |
| CVE-2018-17152 | — | — | 0.7% | Jul 11, 2019 | Intersystems Cache 2017.2.2.865.0 allows XXE. |
| CVE-2018-17151 | — | — | 0.7% | Jul 11, 2019 | Intersystems Cache 2017.2.2.865.0 has Incorrect Access Control. |
| CVE-2018-17150 | — | — | 0.9% | Jul 11, 2019 | Intersystems Cache 2017.2.2.865.0 allows XSS. |
| CVE-2018-11744 | — | — | 0.9% | Jul 11, 2019 | Cloudera Manager through 5.15 has Incorrect Access Control. |
| CVE-2018-11734 | — | — | 0.8% | Jul 10, 2019 | In e107 v2.1.7, output without filtering results in XSS. |
| CVE-2018-19584 | — | — | 1.5% | Jul 10, 2019 | GitLab EE, versions 11.x before 11.3.11, 11.4 before 11.4.8, and 11.5 before 11.5.1, is vulnerable to an insecure direct... |
| CVE-2018-19582 | — | — | 0.8% | Jul 10, 2019 | GitLab EE, versions 11.4 before 11.4.8 and 11.5 before 11.5.1, is affected by an insecure direct object reference vulner... |
| CVE-2018-19581 | — | — | 1.1% | Jul 10, 2019 | GitLab EE, versions 8.3 up to 11.x before 11.3.11, 11.4 before 11.4.8, and 11.5 before 11.5.1, is vulnerable to an insec... |
| CVE-2018-19580 | — | — | 1.0% | Jul 10, 2019 | All versions of GitLab prior to 11.5.1, 11.4.8, and 11.3.11 do not send an email to the old email address when an email ... |
| CVE-2018-19579 | — | — | 0.7% | Jul 10, 2019 | GitLab EE version 11.5 is vulnerable to a persistent XSS vulnerability in the Operations page. This is fixed in 11.5.1. |
| CVE-2018-19578 | — | — | 1.0% | Jul 10, 2019 | GitLab EE, version 11.5 before 11.5.1, is vulnerable to an insecure object reference issue that permits a user with Repo... |
| CVE-2018-19576 | — | — | 1.2% | Jul 10, 2019 | GitLab CE/EE, versions 8.6 up to 11.x before 11.3.11, 11.4 before 11.4.8, and 11.5 before 11.5.1, are vulnerable to an a... |
| CVE-2018-19575 | — | — | 1.1% | Jul 10, 2019 | GitLab CE/EE, versions 10.1 up to 11.x before 11.3.11, 11.4 before 11.4.8, and 11.5 before 11.5.1, are vulnerable to an ... |
| CVE-2018-19572 | — | — | 0.9% | Jul 10, 2019 | GitLab CE 8.17 and later and EE 8.3 and later have a symlink time-of-check-to-time-of-use race condition that would allo... |
| CVE-2018-19569 | — | — | 1.9% | Jul 10, 2019 | GitLab CE/EE, versions 8.8 up to 11.x before 11.3.11, 11.4 before 11.4.8, and 11.5 before 11.5.1, are vulnerable to an a... |
| CVE-2018-19496 | — | — | 0.8% | Jul 10, 2019 | An issue was discovered in GitLab Community and Enterprise Edition 10.x and 11.x before 11.3.11, 11.4.x before 11.4.8, a... |
| CVE-2018-19495 | — | — | 1.0% | Jul 10, 2019 | An issue was discovered in GitLab Community and Enterprise Edition before 11.3.11, 11.4.x before 11.4.8, and 11.5.x befo... |
| CVE-2018-19494 | — | — | 0.8% | Jul 10, 2019 | An issue was discovered in GitLab Community and Enterprise Edition 11.x before 11.3.11, 11.4.x before 11.4.8, and 11.5.x... |
Check if your code is affected by 2018 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now