2018 CVE Vulnerabilities

17,817 CVEs published in 2018.

CVE IDSeverityCVSSDescription
CVE-2018-12902In Easy Magazine through 2012-10-26, there is XSS in the search bar of the web site.
CVE-2018-12900Heap-based buffer overflow in the cpSeparateBufToContigBuf function in tiffcp.c in LibTIFF 3.9.3, 3.9.4, 3.9.5, 3.9.6, 3...
CVE-2018-11053MEDIUM6.5Dell EMC iDRAC Service Module for all supported Linux and XenServer versions v3.0.1, v3.0.2, v3.1.0, v3.2.0, when starte...
CVE-2018-3841HIGH7.5A denial-of-service vulnerability exists in the Pixar Renderman IT Display Service 21.6 (0x69). The vulnerability is pre...
CVE-2018-3840HIGH7.5A denial-of-service vulnerability exists in the Pixar Renderman IT Display Service 21.6 (0x67). The vulnerability is pre...
CVE-2018-1614MEDIUM5.8IBM WebSphere Application Server 7.0, 8.0, 8.5, and 9.0 using malformed SAML responses from the SAML identity provider c...
CVE-2018-1374MEDIUM5.3An IBM WebSphere MQ (Maintenance levels 7.1.0.0 - 7.1.0.9, 7.5.0.0 - 7.5.0.8, 8.0.0.0 - 8.0.0.8, 9.0.0.0 - 9.0.0.2, and ...
CVE-2018-12895HIGH8.8WordPress through 4.9.6 allows Author users to execute arbitrary code by leveraging directory traversal in the wp-admin/...
CVE-2018-10594Delta Industrial Automation COMMGR from Delta Electronics versions 1.08 and prior with accompanying PLC Simulators (DVPS...
CVE-2018-3760There is an information leak vulnerability in Sprockets. Versions Affected: 4.0.0.beta7 and lower, 3.7.1 and lower, 2.12...
CVE-2018-12712An issue was discovered in Joomla! 2.5.0 through 3.8.8 before 3.8.9. The autoload code checks classnames to be valid, us...
CVE-2018-12711An XSS issue was discovered in the language switcher module in Joomla! 1.6.0 through 3.8.8 before 3.8.9. In some cases, ...
CVE-2018-4861A vulnerability has been identified in SCALANCE M875 (All versions). An authenticated remote attacker with access to the...
CVE-2018-4860A vulnerability has been identified in SCALANCE M875 (All versions). An authenticated remote attacker with access to the...
CVE-2018-4859A vulnerability has been identified in SCALANCE M875 (All versions). An authenticated remote attacker with access to the...
CVE-2018-4846A vulnerability has been identified in RAPIDLab 1200 systems / RAPIDPoint 400 systems / RAPIDPoint 500 systems (All vers...
CVE-2018-4845HIGH8.8A vulnerability has been identified in RAPIDLab 1200 systems / RAPIDPoint 400 systems / RAPIDPoint 500 systems (All vers...
CVE-2018-11449A vulnerability has been identified in SCALANCE M875 (All versions). An attacker with access to the local file system mi...
CVE-2018-11448A vulnerability has been identified in SCALANCE M875 (All versions). The web interface on port 443/tcp could allow a sto...
CVE-2018-11447A vulnerability has been identified in SCALANCE M875 (All versions). The web interface on port 443/tcp could allow a Cro...
CVE-2018-1072MEDIUM5ovirt-engine before version ovirt 4.2.2 is vulnerable to an information exposure through log files. When engine-backup w...
CVE-2018-10664An issue was discovered in the httpd process in multiple models of Axis IP Cameras. There is Memory Corruption.
CVE-2018-10663An issue was discovered in multiple models of Axis IP Cameras. There is an Incorrect Size Calculation.
CVE-2018-10662An issue was discovered in multiple models of Axis IP Cameras. There is an Exposed Insecure Interface.
CVE-2018-10661An issue was discovered in multiple models of Axis IP Cameras. There is a bypass of access control.

Check if your code is affected by 2018 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now