2018 CVE Vulnerabilities
17,817 CVEs published in 2018.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2018-12468 | CRITICAL | 9.1 | 2.2% | Aug 1, 2018 | A vulnerability in the administration console of Micro Focus GroupWise prior to version 18.0.2 may allow a remote attack... |
| CVE-2018-0413 | — | — | 1.2% | Aug 1, 2018 | A vulnerability in the web-based management interface of Cisco Identity Services Engine (ISE) could allow an unauthentic... |
| CVE-2018-0411 | — | — | 1.8% | Aug 1, 2018 | A vulnerability in the web-based management interface of Cisco Unified Communications Manager could allow an unauthentic... |
| CVE-2018-0408 | — | — | 0.7% | Aug 1, 2018 | A vulnerability in the web-based management interface of Cisco Small Business 300 Series (Sx300) Managed Switches could ... |
| CVE-2018-0407 | — | — | 0.7% | Aug 1, 2018 | A vulnerability in the web-based management interface of Cisco Small Business 300 Series (Sx300) Managed Switches could ... |
| CVE-2018-0406 | — | — | 1.8% | Aug 1, 2018 | A vulnerability in the web-based management interface of Cisco Web Security Appliance (WSA) could allow an unauthenticat... |
| CVE-2018-0397 | — | — | 1.5% | Aug 1, 2018 | A vulnerability in Cisco AMP for Endpoints Mac Connector Software installed on Apple macOS 10.12 could allow an unauthen... |
| CVE-2018-0391 | — | — | 2.7% | Aug 1, 2018 | A vulnerability in the password change function of Cisco Prime Collaboration Provisioning could allow an authenticated, ... |
| CVE-2018-3847 | HIGH | 8.8 | 2.8% | Aug 1, 2018 | Multiple exploitable buffer overflow vulnerabilities exist in image parsing functionality of the CFITSIO library version... |
| CVE-2018-14777 | — | — | 0.7% | Aug 1, 2018 | An issue was discovered in DataLife Engine (DLE) through 13.0. An attacker can use XSS (related to the /addnews.html and... |
| CVE-2018-8034 | HIGH | 7.5 | 21.3% | Aug 1, 2018 | The host name verification when using TLS with the WebSocket client was missing. It is now enabled by default. Versions ... |
| CVE-2018-10618 | — | — | 10.1% | Aug 1, 2018 | Davolink DVW-3200N all version prior to Version 1.00.06. The device generates a weak password hash that is easily cracke... |
| CVE-2018-1595 | HIGH | 8.8 | 2.4% | Aug 1, 2018 | IBM Spectrum Symphony and Platform Symphony 7.1.2 and 7.2.0.2 could allow an authenticated user to execute arbitrary com... |
| CVE-2018-10897 | HIGH | 8.1 | 5.7% | Aug 1, 2018 | A directory traversal issue was found in reposync, a part of yum-utils, where reposync fails to sanitize paths in remote... |
| CVE-2018-10896 | HIGH | 7.1 | 0.4% | Aug 1, 2018 | The default cloud-init configuration, in cloud-init 0.6.2 and newer, included "ssh_deletekeys: 0", disabling cloud-init'... |
| CVE-2018-10894 | MEDIUM | 5.4 | 0.4% | Aug 1, 2018 | It was found that SAML authentication in Keycloak 3.4.3.Final incorrectly authenticated expired certificates. A maliciou... |
| CVE-2018-3923 | HIGH | 7.8 | 1.5% | Aug 1, 2018 | A memory corruption vulnerability exists in the PCX-parsing functionality of Computerinsel Photoline 20.54. A specially ... |
| CVE-2018-3922 | HIGH | 7.8 | 1.5% | Aug 1, 2018 | A memory corruption vulnerability exists in the ANI-parsing functionality of Computerinsel Photoline 20.54. A specially ... |
| CVE-2018-3921 | HIGH | 7.8 | 1.5% | Aug 1, 2018 | A memory corruption vulnerability exists in the PSD-parsing functionality of Computerinsel Photoline 20.54. A specially ... |
| CVE-2018-3672 | — | — | 0.4% | Aug 1, 2018 | Driver module in Intel Smart Sound Technology before version 9.21.00.3541 potentially allows a local attacker to execute... |
| CVE-2018-3671 | — | — | 0.4% | Aug 1, 2018 | Escalation of privilege in Intel Saffron admin application before 11.4 allows an authenticated user to access unauthoriz... |
| CVE-2018-3670 | — | — | 0.4% | Aug 1, 2018 | Driver module in Intel Smart Sound Technology before version 9.21.00.3541 potentially allows a local attacker to execute... |
| CVE-2018-3666 | — | — | 0.4% | Aug 1, 2018 | Driver module in Intel Smart Sound Technology before version 9.21.00.3541 potentially allows a local attacker to execute... |
| CVE-2018-3663 | — | — | 0.4% | Aug 1, 2018 | Escalation of privilege in Intel Saffron MemoryBase before 11.4 allows an authenticated user access to privileged inform... |
| CVE-2018-3662 | — | — | 0.7% | Aug 1, 2018 | Escalation of privilege in Intel Saffron MemoryBase before version 11.4 potentially allows an authorized user of the Saf... |
Check if your code is affected by 2018 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now