2018 CVE Vulnerabilities
17,817 CVEs published in 2018.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2018-1000116 | — | — | 6.3% | Mar 7, 2018 | NET-SNMP version 5.7.2 contains a heap corruption vulnerability in the UDP protocol handler that can result in command e... |
| CVE-2018-1054 | — | — | 4.8% | Mar 7, 2018 | An out-of-bounds memory read flaw was found in the way 389-ds-base handled certain LDAP search filters, affecting all ve... |
| CVE-2018-7741 | — | — | 0.7% | Mar 7, 2018 | Eramba e1.0.6.033 has Reflected XSS in the Date Filter via the created parameter to the /crons URI. |
| CVE-2018-7740 | — | — | 0.6% | Mar 7, 2018 | The resv_map_release function in mm/hugetlb.c in the Linux kernel through 4.15.7 allows local users to cause a denial of... |
| CVE-2018-7721 | — | — | 0.7% | Mar 7, 2018 | Cross Site Scripting (XSS) exists in MetInfo 6.0.0 via /feedback/index.php because app/system/feedback/web/feedback.clas... |
| CVE-2018-7739 | — | — | 54.6% | Mar 7, 2018 | antsle antman before 0.9.1a allows remote attackers to bypass authentication via invalid characters in the username and ... |
| CVE-2018-7738 | — | — | 0.5% | Mar 7, 2018 | In util-linux before 2.32-rc1, bash-completion/umount allows local users to gain privileges by embedding shell commands ... |
| CVE-2018-7737 | — | — | 8.8% | Mar 6, 2018 | In Z-BlogPHP 1.5.1.1740, there is Web Site physical path leakage, as demonstrated by admin_footer.php or admin_footer.ph... |
| CVE-2018-7736 | — | — | 3.4% | Mar 6, 2018 | In Z-BlogPHP 1.5.1.1740, cmd.php has XSS via the ZC_BLOG_SUBNAME parameter or ZC_UPLOAD_FILETYPE parameter. NOTE: the so... |
| CVE-2018-5471 | — | — | 1.0% | Mar 6, 2018 | A Cleartext Transmission of Sensitive Information issue was discovered in Belden Hirschmann RS, RSR, RSB, MACH100, MACH1... |
| CVE-2018-5469 | — | — | 2.9% | Mar 6, 2018 | An Improper Restriction of Excessive Authentication Attempts issue was discovered in Belden Hirschmann RS, RSR, RSB, MAC... |
| CVE-2018-5467 | — | — | 1.3% | Mar 6, 2018 | An Information Exposure Through Query Strings in GET Request issue was discovered in Belden Hirschmann RS, RSR, RSB, MAC... |
| CVE-2018-5465 | — | — | 1.8% | Mar 6, 2018 | A Session Fixation issue was discovered in Belden Hirschmann RS, RSR, RSB, MACH100, MACH1000, MACH4000, MS, and OCTOPUS ... |
| CVE-2018-5461 | — | — | 0.5% | Mar 6, 2018 | An Inadequate Encryption Strength issue was discovered in Belden Hirschmann RS, RSR, RSB, MACH100, MACH1000, MACH4000, M... |
| CVE-2018-7184 | — | — | 8.9% | Mar 6, 2018 | ntpd in ntp 4.2.8p4 before 4.2.8p11 drops bad packets before updating the "received" timestamp, which allows remote atta... |
| CVE-2018-7182 | — | — | 29.8% | Mar 6, 2018 | The ctl_getitem method in ntpd in ntp-4.2.8p6 before 4.2.8p11 allows remote attackers to cause a denial of service (out-... |
| CVE-2018-6811 | — | — | 1.2% | Mar 6, 2018 | Multiple cross-site scripting (XSS) vulnerabilities in Citrix NetScaler ADC 10.5, 11.0, 11.1, and 12.0, and NetScaler Ga... |
| CVE-2018-6810 | — | — | 4.6% | Mar 6, 2018 | Directory traversal vulnerability in NetScaler ADC 10.5, 11.0, 11.1, and 12.0, and NetScaler Gateway 10.5, 11.0, 11.1, a... |
| CVE-2018-6809 | — | — | 4.4% | Mar 6, 2018 | NetScaler ADC 10.5, 11.0, 11.1, and 12.0, and NetScaler Gateway 10.5, 11.0, 11.1, and 12.0 allow remote attackers to gai... |
| CVE-2018-6808 | — | — | 2.5% | Mar 6, 2018 | NetScaler ADC 10.5, 11.0, 11.1, and 12.0, and NetScaler Gateway 10.5, 11.0, 11.1, and 12.0 allow remote attackers to dow... |
| CVE-2018-6019 | — | — | 0.3% | Mar 6, 2018 | Samsung Display Solutions App before 3.02 for Android allows man-in-the-middle attackers to spoof B2B content by leverag... |
| CVE-2018-1343 | — | — | 1.4% | Mar 6, 2018 | PAM exposure enabling unauthenticated access to remote host |
| CVE-2018-7735 | — | — | 1.3% | Mar 6, 2018 | Afian FileRun (before 2018.02.13) suffers from a remote SQL injection vulnerability, when logged in as superuser, via th... |
| CVE-2018-7734 | — | — | 1.3% | Mar 6, 2018 | Afian FileRun (before 2018.02.13) suffers from a remote SQL injection vulnerability, when logged in as superuser, via th... |
| CVE-2018-7733 | — | — | 0.5% | Mar 6, 2018 | An issue was discovered in YxtCMF 3.1. RbacController.class.php has CSRF, as demonstrated by modifying an administrator ... |
Check if your code is affected by 2018 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now