2018 CVE Vulnerabilities

17,817 CVEs published in 2018.

Filter:CRITICALClear
CVE IDSeverityCVSSDescription
CVE-2018-21244CRITICAL9.8An issue was discovered in Foxit PhantomPDF before 8.3.6. It allows arbitrary application execution via an embedded exec...
CVE-2018-21242CRITICAL9.8An issue was discovered in Foxit PhantomPDF before 8.3.6. It allows Remote Code Execution via a GoToE or GoToR action.
CVE-2018-21234CRITICAL9.8Jodd before 5.0.4 performs Deserialization of Untrusted JSON Data when setClassMetadataName is set.
CVE-2018-1285CRITICAL9.8Apache log4net versions before 2.0.10 do not disable XML external entities when parsing log4net configuration files. Thi...
CVE-2018-21153CRITICAL9.8Certain NETGEAR devices are affected by a buffer overflow by an unauthenticated attacker. This affects D7800 before 1.0....
CVE-2018-21097CRITICAL9.8Certain NETGEAR devices are affected by a stack-based buffer overflow by an unauthenticated attacker. This affects WAC50...
CVE-2018-21162CRITICAL9.8Certain NETGEAR devices are affected by command injection by an unauthenticated attacker. This affects D6400 before 1.0....
CVE-2018-21161CRITICAL9.8Certain NETGEAR devices are affected by incorrect configuration of security settings. This affects D7800 before 1.0.1.34...
CVE-2018-21137CRITICAL9.8Certain NETGEAR devices are affected by a hardcoded password. This affects D3600 before 1.0.0.76 and D6000 before 1.0.0....
CVE-2018-21134CRITICAL9.8Certain NETGEAR devices are affected by a stack-based buffer overflow by an unauthenticated attacker. This affects R6700...
CVE-2018-21133CRITICAL9.8Certain NETGEAR devices are affected by a stack-based buffer overflow by an unauthenticated attacker. This affects WAC50...
CVE-2018-21132CRITICAL9.8Certain NETGEAR devices are affected by authentication bypass. This affects WAC505 before 5.0.0.17 and WAC510 before 5.0...
CVE-2018-21131CRITICAL9.1Certain NETGEAR devices are affected by unauthenticated firmware downgrade. This affects WAC505 before 5.0.0.17 and WAC5...
CVE-2018-21075CRITICAL9.8An issue was discovered on Samsung mobile devices with N(7.x) and O(8.x) software. The Call+ application can load classe...
CVE-2018-21072CRITICAL9.8An issue was discovered on Samsung mobile devices with M(6.0), N(7.x), and O(8.0) (Exynos chipsets) software. A kernel d...
CVE-2018-21066CRITICAL9.8An issue was discovered on Samsung mobile devices with M(6.0) (Exynos or MediaTek chipsets) software. There is a buffer ...
CVE-2018-21065CRITICAL9.8An issue was discovered on Samsung mobile devices with M(6.0), N(7.x), and O(8.x) software. There is an integer underflo...
CVE-2018-21064CRITICAL9.8An issue was discovered on Samsung mobile devices with N(7.x) and O(8.x) software. There is an array overflow in a drive...
CVE-2018-21063CRITICAL9.8An issue was discovered on Samsung mobile devices with M(6.0), N(7.x), and O(8.x) (Exynos chipsets) software. Keymaster ...
CVE-2018-21058CRITICAL9.8An issue was discovered on Samsung mobile devices with N(7.0), O(8.0) (exynos7420 or Exynos 8890/8996 chipsets) software...
CVE-2018-21057CRITICAL9.8An issue was discovered on Samsung mobile devices with N(7.x) O(8.x, and P(9.0) (Exynos chipsets) software. There is a s...
CVE-2018-21055CRITICAL9.8An issue was discovered on Samsung mobile devices with N(7.0) (Qualcomm models using MSM8996 chipsets) software. A devic...
CVE-2018-21054CRITICAL9.8An issue was discovered on Samsung mobile devices with M(6.0), N(7.x) and O(8.x) except exynos9610/9820 in all Platforms...
CVE-2018-21052CRITICAL9.8An issue was discovered on Samsung mobile devices with N(7.x) and O(8.X) (Exynos chipsets) software. There is incorrect ...
CVE-2018-21051CRITICAL9.8An issue was discovered on Samsung mobile devices with N(7.x) and O(8.x) (Exynos chipsets) software. There is an invalid...

Check if your code is affected by 2018 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now