2018 CVE Vulnerabilities
17,817 CVEs published in 2018.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2018-2400 | — | — | 1.7% | Mar 14, 2018 | Under certain conditions SAP Business Process Automation (BPA) By Redwood, 9.00, 9.10, allows an attacker to access info... |
| CVE-2018-7533 | — | — | 0.3% | Mar 14, 2018 | An Incorrect Default Permissions issue was discovered in OSIsoft PI Data Archive versions 2017 and prior. Insecure defau... |
| CVE-2018-7531 | — | — | 1.4% | Mar 14, 2018 | An Improper Input Validation issue was discovered in OSIsoft PI Data Archive versions 2017 and prior. Unauthenticated us... |
| CVE-2018-7529 | — | — | 2.1% | Mar 14, 2018 | A Deserialization of Untrusted Data issue was discovered in OSIsoft PI Data Archive versions 2017 and prior. Unauthentic... |
| CVE-2018-7508 | — | — | 0.9% | Mar 14, 2018 | A Cross-site Scripting issue was discovered in OSIsoft PI Web API versions 2017 R2 and prior. Cross-site scripting may o... |
| CVE-2018-7504 | — | — | 0.9% | Mar 14, 2018 | A Protection Mechanism Failure issue was discovered in OSIsoft PI Vision versions 2017 and prior. The X-XSS-Protection r... |
| CVE-2018-7500 | — | — | 1.9% | Mar 14, 2018 | A Permissions, Privileges, and Access Controls issue was discovered in OSIsoft PI Web API versions 2017 R2 and prior. Pr... |
| CVE-2018-7496 | — | — | 1.3% | Mar 14, 2018 | An Information Exposure issue was discovered in OSIsoft PI Vision versions 2017 and prior. The server response header an... |
| CVE-2018-1077 | — | — | 1.1% | Mar 14, 2018 | Spacewalk 2.6 contains an API which has an XXE flaw allowing for the disclosure of potentially sensitive information fro... |
| CVE-2018-1000122 | — | — | 9.4% | Mar 14, 2018 | A buffer over-read exists in curl 7.20.0 to and including curl 7.58.0 in the RTSP+RTP handling code that allows an attac... |
| CVE-2018-1000121 | — | — | 9.6% | Mar 14, 2018 | A NULL pointer dereference exists in curl 7.21.0 to and including curl 7.58.0 in the LDAP code that allows an attacker t... |
| CVE-2018-1000120 | — | — | 12.1% | Mar 14, 2018 | A buffer overflow exists in curl 7.12.3 to and including curl 7.58.0 in the FTP URL handling that allows an attacker to ... |
| CVE-2018-0983 | — | — | 1.2% | Mar 14, 2018 | Windows Storage Services in Windows 10 versions 1511, 1607, 1703 and 1709, Windows Server 2016 and Windows Server, versi... |
| CVE-2018-0977 | — | — | 1.2% | Mar 14, 2018 | The Windows kernel mode driver in Windows 10 Gold, 1511, 1607, 1703, and 1709, Windows Server 2016 and Windows Server, v... |
| CVE-2018-0947 | — | — | 4.7% | Mar 14, 2018 | Microsoft SharePoint Foundation 2013 SP1 and Microsoft SharePoint Enterprise Server 2016 allow an elevation of privilege... |
| CVE-2018-0944 | — | — | 4.7% | Mar 14, 2018 | Microsoft Project Server 2013 SP1 and Microsoft SharePoint Enterprise Server 2016 allows an elevation of privilege vulne... |
| CVE-2018-0942 | — | — | 3.2% | Mar 14, 2018 | Internet Explorer in Microsoft Windows 7 SP1, Windows Server 2008 SP2 and R2 SP1, Windows 8.1 and Windows RT 8.1, Window... |
| CVE-2018-0941 | — | — | 12.9% | Mar 14, 2018 | Microsoft Exchange Server 2016 Cumulative Update 7 and Microsoft Exchange Server 2016 Cumulative Update 8 allow an infor... |
| CVE-2018-0940 | — | — | 7.6% | Mar 14, 2018 | Microsoft Exchange Outlook Web Access (OWA) in Microsoft Exchange Server 2010 Service Pack 3 Update Rollup 20, Microsoft... |
| CVE-2018-0939 | — | — | 5.7% | Mar 14, 2018 | ChakraCore and Microsoft Edge in Windows 10 1703 and 1709 allow information disclosure, due to how the scripting engine ... |
| CVE-2018-0937 | — | — | 15.6% | Mar 14, 2018 | ChakraCore and Microsoft Windows 10 1703 and 1709 allow remote code execution, due to how the Chakra scripting engine ha... |
| CVE-2018-0936 | — | — | 15.6% | Mar 14, 2018 | ChakraCore and Microsoft Windows 10 1709 allow remote code execution, due to how the Chakra scripting engine handles obj... |
| CVE-2018-0935 | — | — | 55.9% | Mar 14, 2018 | Internet Explorer in Microsoft Windows 7 SP1, Windows Server 2008 and R2 SP1, Windows 8.1 and Windows RT 8.1, Windows Se... |
| CVE-2018-0934 | — | — | 66.5% | Mar 14, 2018 | ChakraCore and Microsoft Windows 10 Gold, 1511, 1607, 1703, 1709, and Windows Server 2016 allows remote code execution, ... |
| CVE-2018-0933 | — | — | 66.6% | Mar 14, 2018 | ChakraCore and Microsoft Windows 10 Gold, 1511, 1607, 1703, 1709, and Windows Server 2016 allows remote code execution, ... |
Check if your code is affected by 2018 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now