2018 CVE Vulnerabilities
17,817 CVEs published in 2018.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2018-20686 | — | — | — | Sep 17, 2021 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Fu... |
| CVE-2018-19957 | MEDIUM | 6.1 | 0.7% | Sep 10, 2021 | A vulnerability involving insufficient HTTP security headers has been reported to affect QNAP NAS running QTS, QuTS hero... |
| CVE-2018-10790 | HIGH | 7.5 | 1.5% | Aug 25, 2021 | The AP4_CttsAtom class in Core/Ap4CttsAtom.cpp in Bento4 1.5.1.0 allows remote attackers to cause a denial of service (a... |
| CVE-2018-17865 | MEDIUM | 6.1 | 0.7% | Aug 9, 2021 | A cross-site scripting (XSS) vulnerability in SAP J2EE Engine 7.01 allows remote attackers to inject arbitrary web scrip... |
| CVE-2018-17862 | MEDIUM | 6.1 | 1.4% | Aug 9, 2021 | A cross-site scripting (XSS) vulnerability in SAP J2EE Engine/7.01/Fiori allows remote attackers to inject arbitrary web... |
| CVE-2018-17861 | MEDIUM | 6.1 | 1.5% | Aug 9, 2021 | A cross-site scripting (XSS) vulnerability in SAP J2EE Engine/7.01/Portal/EPP allows remote attackers to inject arbitrar... |
| CVE-2018-11669 | — | — | — | Jul 22, 2021 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. No... |
| CVE-2018-11668 | — | — | — | Jul 22, 2021 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. No... |
| CVE-2018-11666 | — | — | — | Jul 22, 2021 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. No... |
| CVE-2018-11665 | — | — | — | Jul 22, 2021 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. No... |
| CVE-2018-11664 | — | — | — | Jul 22, 2021 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. No... |
| CVE-2018-11663 | — | — | — | Jul 22, 2021 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. No... |
| CVE-2018-11662 | — | — | — | Jul 22, 2021 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. No... |
| CVE-2018-11661 | — | — | — | Jul 22, 2021 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. No... |
| CVE-2018-11659 | — | — | — | Jul 22, 2021 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. No... |
| CVE-2018-25018 | HIGH | 7.8 | 1.3% | Jul 1, 2021 | UnRAR 5.6.1.7 through 5.7.4 and 6.0.3 has an out-of-bounds write during a memcpy in QuickOpen::ReadRaw when called from ... |
| CVE-2018-25017 | CRITICAL | 9.8 | 1.7% | Jul 1, 2021 | RawSpeed (aka librawspeed) 3.1 has a heap-based buffer overflow in TableLookUp::setTable. |
| CVE-2018-1138 | — | — | — | Jun 28, 2021 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. No... |
| CVE-2018-25016 | CRITICAL | 9.8 | 1.3% | Jun 21, 2021 | Greenbone Security Assistant (GSA) before 7.0.3 and Greenbone OS (GOS) before 5.0.0 allow Host Header Injection. |
| CVE-2018-14639 | — | — | — | Jun 18, 2021 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. No... |
| CVE-2018-25015 | HIGH | 7.8 | 0.6% | Jun 7, 2021 | An issue was discovered in the Linux kernel before 4.14.16. There is a use-after-free in net/sctp/socket.c for a held lo... |
| CVE-2018-10195 | HIGH | 7.1 | 0.4% | Jun 2, 2021 | lrzsz before version 0.12.21~rc can leak information to the receiving side due to an incorrect length check in the funct... |
| CVE-2018-16499 | MEDIUM | 5.9 | 0.3% | May 26, 2021 | In VOS compromised, an attacker at network endpoints can possibly view communications between an unsuspecting user and t... |
| CVE-2018-16498 | MEDIUM | 5.5 | 0.2% | May 26, 2021 | In Versa Director, the unencrypted backup files stored on the Versa deployment contain credentials stored within configu... |
| CVE-2018-16497 | HIGH | 7.8 | 0.2% | May 26, 2021 | In Versa Analytics, the cron jobs are used for scheduling tasks by executing commands at specific dates and times on the... |
Check if your code is affected by 2018 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now