2018 CVE Vulnerabilities
17,817 CVEs published in 2018.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2018-10666 | — | — | 1.0% | May 3, 2018 | The Owned smart contract implementation for Aurora IDEX Membership (IDXM), an Ethereum ERC20 token, allows attackers to ... |
| CVE-2018-10685 | — | — | 2.5% | May 2, 2018 | In Long Range Zip (aka lrzip) 0.631, there is a use-after-free in the lzma_decompress_buf function of stream.c, which al... |
| CVE-2018-0287 | — | — | 3.9% | May 2, 2018 | A vulnerability in the Cisco WebEx Network Recording Player for Advanced Recording Format (ARF) files could allow an una... |
| CVE-2018-0285 | — | — | 2.8% | May 2, 2018 | A vulnerability in service logging for Cisco Prime Service Catalog could allow an authenticated, remote attacker to deny... |
| CVE-2018-0283 | — | — | 1.5% | May 2, 2018 | A vulnerability in the detection engine of Cisco Firepower System Software could allow an unauthenticated, remote attack... |
| CVE-2018-0281 | — | — | 1.5% | May 2, 2018 | A vulnerability in the detection engine of Cisco Firepower System Software could allow an unauthenticated, remote attack... |
| CVE-2018-0264 | — | — | 3.2% | May 2, 2018 | A vulnerability in the Cisco WebEx Network Recording Player for Advanced Recording Format (ARF) files could allow an una... |
| CVE-2018-0262 | — | — | 4.2% | May 2, 2018 | A vulnerability in Cisco Meeting Server could allow an unauthenticated, remote attacker to gain unauthorized access to c... |
| CVE-2018-0258 | — | — | 49.9% | May 2, 2018 | A vulnerability in the Cisco Prime File Upload servlet affecting multiple Cisco products could allow a remote attacker t... |
| CVE-2018-0253 | — | — | 7.1% | May 2, 2018 | A vulnerability in the ACS Report component of Cisco Secure Access Control System (ACS) could allow an unauthenticated, ... |
| CVE-2018-0252 | — | — | 2.5% | May 2, 2018 | A vulnerability in the IP Version 4 (IPv4) fragment reassembly function of Cisco 3500, 5500, and 8500 Series Wireless LA... |
| CVE-2018-0250 | — | — | 0.5% | May 2, 2018 | A vulnerability in Central Web Authentication (CWA) with FlexConnect Access Points (APs) for Cisco Aironet 1560, 1810, 1... |
| CVE-2018-0247 | — | — | 0.9% | May 2, 2018 | A vulnerability in Web Authentication (WebAuth) clients for the Cisco Wireless LAN Controller (WLC) and Aironet Access P... |
| CVE-2018-0234 | — | — | 4.0% | May 2, 2018 | A vulnerability in the implementation of Point-to-Point Tunneling Protocol (PPTP) functionality in Cisco Aironet 1810, 1... |
| CVE-2018-0226 | — | — | 2.2% | May 2, 2018 | A vulnerability in the assignment and management of default user accounts for Secure Shell (SSH) access to Cisco Aironet... |
| CVE-2018-9919 | — | — | 4.8% | May 2, 2018 | A web-accessible backdoor, with resultant SSRF, exists in Tp-shop 2.0.5 through 2.0.8, which allows remote attackers to ... |
| CVE-2018-8900 | — | — | 1.0% | May 2, 2018 | The License Manager service of HASP SRM, Sentinel HASP and Sentinel LDK products prior to Sentinel LDK RTE 7.80 allows r... |
| CVE-2018-10578 | — | — | 1.3% | May 2, 2018 | An issue was discovered on WatchGuard AP100, AP102, and AP200 devices with firmware before 1.2.9.15, and AP300 devices w... |
| CVE-2018-10577 | — | — | 6.6% | May 2, 2018 | An issue was discovered on WatchGuard AP100, AP102, and AP200 devices with firmware before 1.2.9.15, and AP300 devices w... |
| CVE-2018-10568 | — | — | 0.7% | May 2, 2018 | XSS exists in Flexense DiskSorter Enterprise from v9.5.12 to v10.7. |
| CVE-2018-10567 | — | — | 0.7% | May 2, 2018 | XSS exists in Flexense VX Search Enterprise from v10.1.12 to v10.7. |
| CVE-2018-10566 | — | — | 0.7% | May 2, 2018 | XSS exists in Flexense DupScout Enterprise from v10.0.18 to v10.7. |
| CVE-2018-10565 | — | — | 0.7% | May 2, 2018 | XSS exists in Flexense DiskSavvy Enterprise from v10.4 to v10.7. |
| CVE-2018-10564 | — | — | 0.7% | May 2, 2018 | XSS exists in Flexense DiskPulse Enterprise from v10.4 to v10.7. |
| CVE-2018-10563 | — | — | 0.7% | May 2, 2018 | An XSS in Flexense SyncBreeze affects all versions (tested from SyncBreeze Enterprise from v10.1 to v10.7). |
Check if your code is affected by 2018 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now