2018 CVE Vulnerabilities
17,817 CVEs published in 2018.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2018-1000179 | — | — | 2.4% | May 8, 2018 | A NULL Pointer Dereference of CWE-476 exists in quassel version 0.12.4 in the quasselcore void CoreAuthHandler::handle(c... |
| CVE-2018-1000178 | — | — | 4.0% | May 8, 2018 | A heap corruption of type CWE-120 exists in quassel version 0.12.4 in quasselcore in void DataStreamPeer::processMessage... |
| CVE-2018-1000177 | — | — | 0.7% | May 8, 2018 | A cross-site scripting vulnerability exists in Jenkins S3 Plugin 0.10.12 and older in src/main/resources/hudson/plugins/... |
| CVE-2018-1000176 | — | — | 1.0% | May 8, 2018 | An exposure of sensitive information vulnerability exists in Jenkins Email Extension Plugin 2.61 and older in src/main/r... |
| CVE-2018-1000175 | — | — | 2.7% | May 8, 2018 | A path traversal vulnerability exists in Jenkins HTML Publisher Plugin 1.15 and older in HtmlPublisherTarget.java that a... |
| CVE-2018-1000174 | — | — | 1.0% | May 8, 2018 | An open redirect vulnerability exists in Jenkins Google Login Plugin 1.3 and older in GoogleOAuth2SecurityRealm.java tha... |
| CVE-2018-1000173 | — | — | 1.7% | May 8, 2018 | A session fixaction vulnerability exists in Jenkins Google Login Plugin 1.3 and older in GoogleOAuth2SecurityRealm.java ... |
| CVE-2018-1248 | — | — | 1.9% | May 8, 2018 | RSA Authentication Manager Security Console, Operation Console and Self-Service Console, version 8.3 and earlier, is aff... |
| CVE-2018-1247 | — | — | 17.0% | May 8, 2018 | RSA Authentication Manager Security Console, version 8.3 and earlier, contains a XML External Entity (XXE) vulnerability... |
| CVE-2018-1239 | — | — | 3.4% | May 8, 2018 | Dell EMC Unity Operating Environment (OE) versions prior to 4.3.0.1522077968 are affected by multiple OS command injecti... |
| CVE-2018-10380 | — | — | 0.4% | May 8, 2018 | kwallet-pam in KDE KWallet before 5.12.6 allows local users to obtain ownership of arbitrary files via a symlink attack. |
| CVE-2018-10809 | — | — | 1.1% | May 8, 2018 | In 2345 Security Guard 3.7, the driver file (2345NetFirewall.sys) allows local users to cause a denial of service (BSOD)... |
| CVE-2018-10806 | — | — | 0.3% | May 8, 2018 | An issue was discovered in Frog CMS 0.9.5. There is a reflected Cross Site Scripting Vulnerability via the file[current_... |
| CVE-2018-10805 | — | — | 1.8% | May 8, 2018 | ImageMagick version 7.0.7-28 contains a memory leak in ReadYCBCRImage in coders/ycbcr.c. |
| CVE-2018-10804 | — | — | 2.0% | May 8, 2018 | ImageMagick version 7.0.7-28 contains a memory leak in WriteTIFFImage in coders/tiff.c. |
| CVE-2018-10734 | — | — | 1.9% | May 8, 2018 | KONGTOP DVR devices A303, A403, D303, D305, and D403 contain a backdoor that prints the login password via a Print_Passw... |
| CVE-2018-10801 | — | — | 1.1% | May 8, 2018 | TIFFClientOpen in tif_unix.c in LibTIFF 3.8.2 has memory leaks, as demonstrated by bmp2tiff. |
| CVE-2018-10799 | — | — | 0.8% | May 8, 2018 | A hang issue was discovered in Brave before 0.14.0 (on, for example, Linux). This vulnerability is caused by the mishand... |
| CVE-2018-10798 | — | — | 0.8% | May 8, 2018 | A hang issue was discovered in Brave before 0.14.0 (on, for example, Linux). The vulnerability is caused by mishandling ... |
| CVE-2018-10796 | — | — | 0.4% | May 8, 2018 | In 2345 Security Guard 3.7, the driver file (2345NetFirewall.sys) allows local users to cause a denial of service (BSOD)... |
| CVE-2018-1413 | — | — | 1.1% | May 7, 2018 | IBM Cognos Analytics 11.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary Java... |
| CVE-2018-10795 | — | — | 1.8% | May 7, 2018 | Liferay 6.2.x and before has an FCKeditor configuration that allows an attacker to upload or transfer files of dangerous... |
| CVE-2018-10780 | — | — | 1.0% | May 7, 2018 | Exiv2::Image::byteSwap2 in image.cpp in Exiv2 0.26 has a heap-based buffer over-read. |
| CVE-2018-10779 | — | — | 3.1% | May 7, 2018 | TIFFWriteScanline in tif_write.c in LibTIFF 3.8.2 has a heap-based buffer over-read, as demonstrated by bmp2tiff. |
| CVE-2018-10778 | — | — | 1.1% | May 7, 2018 | Read access violation in the III_dequantize_sample function in mpglibDBL/layer3.c in mp3gain through 1.5.2-r2 allows rem... |
Check if your code is affected by 2018 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now