2018 CVE Vulnerabilities
17,817 CVEs published in 2018.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2018-10905 | HIGH | 7.8 | 0.5% | Jul 24, 2018 | CloudForms Management Engine (cfme) is vulnerable to an improper security setting in the dRuby component of CloudForms. ... |
| CVE-2018-10604 | HIGH | 8.8 | 1.6% | Jul 24, 2018 | SEL Compass version 3.0.5.1 and prior allows all users full access to the SEL Compass directory, which may allow modific... |
| CVE-2018-1999002 | HIGH | 7.5 | 86.6% | Jul 23, 2018 | A arbitrary file read vulnerability exists in Jenkins 2.132 and earlier, 2.121.1 and earlier in the Stapler web framewor... |
| CVE-2018-1999001 | HIGH | 8.8 | 18.1% | Jul 23, 2018 | A unauthorized modification of configuration vulnerability exists in Jenkins 2.132 and earlier, 2.121.1 and earlier in U... |
| CVE-2018-6683 | HIGH | 7.4 | 0.3% | Jul 23, 2018 | Exploiting Incorrectly Configured Access Control Security Levels vulnerability in McAfee Data Loss Prevention (DLP) for ... |
| CVE-2018-10869 | HIGH | 7.5 | 2.8% | Jul 19, 2018 | redhat-certification does not properly restrict files that can be download through the /download page. A remote attacker... |
| CVE-2018-3871 | HIGH | 7.8 | 1.5% | Jul 19, 2018 | An exploitable out-of-bounds write exists in the PCX parsing functionality of Canvas Draw version 4.0.0. A specially cra... |
| CVE-2018-3870 | HIGH | 7.8 | 1.4% | Jul 19, 2018 | An exploitable out-of-bounds write exists in the PCX parsing functionality of Canvas Draw version 4.0.0. A specially cra... |
| CVE-2018-3860 | HIGH | 7.8 | 1.5% | Jul 19, 2018 | An exploitable out-of-bounds write exists in the TIFF parsing functionality of Canvas Draw version 4.0.0. A specially cr... |
| CVE-2018-3859 | HIGH | 7.8 | 1.8% | Jul 19, 2018 | An exploitable out-of-bounds write exists in the TIFF parsing functionality of Canvas Draw version 4.0.0. A specially cr... |
| CVE-2018-3858 | HIGH | 7.8 | 1.5% | Jul 19, 2018 | An exploitable heap overflow exists in the TIFF parsing functionality of Canvas Draw version 4.0.0. A specially crafted ... |
| CVE-2018-3857 | HIGH | 7.8 | 1.8% | Jul 19, 2018 | An exploitable heap overflow exists in the TIFF parsing functionality of Canvas Draw version 4.0.0. A specially crafted ... |
| CVE-2018-0387 | HIGH | 8.8 | 3.1% | Jul 18, 2018 | A vulnerability in Cisco Webex Teams (for Windows and macOS) could allow an unauthenticated, remote attacker to execute ... |
| CVE-2018-0348 | HIGH | 7.2 | 2.9% | Jul 18, 2018 | A vulnerability in the CLI of the Cisco SD-WAN Solution could allow an authenticated, remote attacker to inject arbitrar... |
| CVE-2018-0345 | HIGH | 8.8 | 3.0% | Jul 18, 2018 | A vulnerability in the configuration and management database of the Cisco SD-WAN Solution could allow an authenticated, ... |
| CVE-2018-10877 | HIGH | 7.3 | 2.3% | Jul 18, 2018 | Linux kernel ext4 filesystem is vulnerable to an out-of-bound access in the ext4_ext_drop_refs() function when operating... |
| CVE-2018-3064 | HIGH | 7.1 | 3.2% | Jul 18, 2018 | Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: InnoDB). Supported versions that are affected... |
| CVE-2018-2964 | HIGH | 8.3 | 2.8% | Jul 18, 2018 | Vulnerability in the Java SE component of Oracle Java SE (subcomponent: Deployment). Supported versions that are affecte... |
| CVE-2018-2942 | HIGH | 8.3 | 1.8% | Jul 18, 2018 | Vulnerability in the Java SE component of Oracle Java SE (subcomponent: Windows DLL). Supported versions that are affect... |
| CVE-2018-2941 | HIGH | 8.3 | 2.2% | Jul 18, 2018 | Vulnerability in the Java SE component of Oracle Java SE (subcomponent: JavaFX). Supported versions that are affected ar... |
| CVE-2018-14363 | HIGH | 7.5 | 2.2% | Jul 17, 2018 | An issue was discovered in NeoMutt before 2018-07-16. newsrc.c does not properly restrict '/' characters that may have u... |
| CVE-2018-14337 | HIGH | 7.5 | 1.4% | Jul 17, 2018 | The CHECK macro in mrbgems/mruby-sprintf/src/sprintf.c in mruby 1.4.1 contains a signed integer overflow, possibly leadi... |
| CVE-2018-1046 | HIGH | 7.8 | 1.4% | Jul 16, 2018 | pdns before version 4.1.2 is vulnerable to a buffer overflow in dnsreplay. In the dnsreplay tool provided with PowerDNS ... |
| CVE-2018-0385 | HIGH | 7.5 | 2.3% | Jul 16, 2018 | A vulnerability in the detection engine parsing of Security Socket Layer (SSL) protocol packets for Cisco Firepower Syst... |
| CVE-2018-10875 | HIGH | 7.8 | 0.6% | Jul 13, 2018 | A flaw was found in ansible. ansible.cfg is read from the current working directory which can be altered to make it poin... |
Check if your code is affected by 2018 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now