2018 CVE Vulnerabilities
17,817 CVEs published in 2018.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2018-13863 | — | — | 1.9% | Jul 10, 2018 | The MongoDB bson JavaScript module (also known as js-bson) versions 0.5.0 to 1.0.x before 1.0.5 is vulnerable to a Regul... |
| CVE-2018-12462 | MEDIUM | 4.8 | 0.6% | Jul 10, 2018 | NetIQ iManager 3.1.1 addresses potential XSS vulnerabilities. |
| CVE-2018-1116 | MEDIUM | 4.4 | 1.2% | Jul 10, 2018 | A flaw was found in polkit before version 0.116. The implementation of the polkit_backend_interactive_authority_check_au... |
| CVE-2018-10872 | MEDIUM | 6.5 | 0.5% | Jul 10, 2018 | A flaw was found in the way the Linux kernel handled exceptions delivered after a stack switch operation via Mov SS or P... |
| CVE-2018-2440 | — | — | 0.3% | Jul 10, 2018 | Under certain circumstances SAP Dynamic Authorization Management (DAM) by NextLabs (Java Policy Controller versions 7.7 ... |
| CVE-2018-2439 | — | — | 1.6% | Jul 10, 2018 | The SAP Internet Graphics Server (IGS), 7.20, 7.20EXT, 7.45, 7.49, 7.53, has insufficient request validation (for exampl... |
| CVE-2018-2438 | — | — | 2.0% | Jul 10, 2018 | The SAP Internet Graphics Server (IGS), 7.20, 7.20EXT, 7.45, 7.49, 7.53, has several denial-of-service vulnerabilities t... |
| CVE-2018-2437 | — | — | 3.3% | Jul 10, 2018 | The SAP Internet Graphics Service (IGS), 7.20, 7.20EXT, 7.45, 7.49, 7.53, allows an attacker to externally trigger IGS c... |
| CVE-2018-2436 | — | — | 1.3% | Jul 10, 2018 | Executing transaction WRCK in SAP R/3 Enterprise Retail (EHP6) does not perform necessary authorization checks for an au... |
| CVE-2018-2435 | — | — | 1.0% | Jul 10, 2018 | SAP NetWeaver Enterprise Portal from 7.0 to 7.02, 7.11, 7.20, 7.30, 7.31, 7.40, 7.50, does not sufficiently encode user ... |
| CVE-2018-2434 | — | — | 0.6% | Jul 10, 2018 | A content spoofing vulnerability in the following components allows to render html pages containing arbitrary plain text... |
| CVE-2018-2433 | — | — | 1.1% | Jul 10, 2018 | SAP Gateway (SAP KERNEL 32 NUC, SAP KERNEL 32 Unicode, SAP KERNEL 64 NUC, SAP KERNEL 64 Unicode 7.21, 7.21EXT, 7.22 and ... |
| CVE-2018-2432 | MEDIUM | 5.4 | 0.7% | Jul 10, 2018 | SAP BusinessObjects Business Intelligence (BI Launchpad and Central Management Console) versions 4.10, 4.20 and 4.30 all... |
| CVE-2018-2431 | — | — | 1.0% | Jul 10, 2018 | SAP BusinessObjects Business Intelligence Suite, versions 4.10 and 4.20, does not sufficiently encode user controlled in... |
| CVE-2018-2427 | — | — | 1.7% | Jul 10, 2018 | SAP BusinessObjects Business Intelligence Suite, versions 4.10 and 4.20, and SAP Crystal Reports (version for Visual Stu... |
| CVE-2018-13850 | — | — | 1.2% | Jul 10, 2018 | The "Firebase Cloud Messaging (FCM) + Advance Admin Panel" component supporting Firebase Push Notification on iOS (throu... |
| CVE-2018-13849 | — | — | 2.3% | Jul 10, 2018 | edit_requests.php in yTakkar Instagram-clone through 2018-04-23 has XSS via an onmouseover payload because of an inadequ... |
| CVE-2018-13848 | — | — | 1.4% | Jul 10, 2018 | An issue has been found in Bento4 1.5.1-624. It is a SEGV in AP4_StszAtom::GetSampleSize in Core/Ap4StszAtom.cpp. |
| CVE-2018-13847 | — | — | 1.5% | Jul 10, 2018 | An issue has been found in Bento4 1.5.1-624. It is a SEGV in AP4_StcoAtom::AdjustChunkOffsets in Core/Ap4StcoAtom.cpp. |
| CVE-2018-13846 | — | — | 1.7% | Jul 10, 2018 | An issue has been found in Bento4 1.5.1-624. AP4_Mpeg2TsVideoSampleStream::WriteSample in Core/Ap4Mpeg2Ts.cpp has a heap... |
| CVE-2018-13845 | — | — | 1.6% | Jul 10, 2018 | An issue has been found in HTSlib 1.8. It is a buffer over-read in sam_parse1 in sam.c. |
| CVE-2018-13844 | HIGH | 7.5 | 1.4% | Jul 10, 2018 | An issue has been found in HTSlib 1.8. It is a memory leak in fai_read in faidx.c. NOTE: This has been disputed with the... |
| CVE-2018-13843 | — | — | 1.5% | Jul 10, 2018 | An issue has been found in HTSlib 1.8. It is a memory leak in bgzf_getline in bgzf.c. NOTE: the software maintainer's po... |
| CVE-2018-12461 | LOW | 3.5 | 0.5% | Jul 10, 2018 | Fixed issues with NetIQ eDirectory prior to 9.1.1 when checking certificate revocation. |
| CVE-2018-10891 | HIGH | 7.3 | 2.1% | Jul 10, 2018 | A flaw was found in moodle before versions 3.5.1, 3.4.4, 3.3.7, 3.1.13. When a quiz question bank is imported, it was po... |
Check if your code is affected by 2018 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now