2018 CVE Vulnerabilities
17,817 CVEs published in 2018.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2018-12902 | — | — | 0.7% | Jun 26, 2018 | In Easy Magazine through 2012-10-26, there is XSS in the search bar of the web site. |
| CVE-2018-12900 | — | — | 25.2% | Jun 26, 2018 | Heap-based buffer overflow in the cpSeparateBufToContigBuf function in tiffcp.c in LibTIFF 3.9.3, 3.9.4, 3.9.5, 3.9.6, 3... |
| CVE-2018-11053 | MEDIUM | 6.5 | 0.5% | Jun 26, 2018 | Dell EMC iDRAC Service Module for all supported Linux and XenServer versions v3.0.1, v3.0.2, v3.1.0, v3.2.0, when starte... |
| CVE-2018-3841 | HIGH | 7.5 | 1.6% | Jun 26, 2018 | A denial-of-service vulnerability exists in the Pixar Renderman IT Display Service 21.6 (0x69). The vulnerability is pre... |
| CVE-2018-3840 | HIGH | 7.5 | 1.6% | Jun 26, 2018 | A denial-of-service vulnerability exists in the Pixar Renderman IT Display Service 21.6 (0x67). The vulnerability is pre... |
| CVE-2018-1614 | MEDIUM | 5.8 | 2.9% | Jun 26, 2018 | IBM WebSphere Application Server 7.0, 8.0, 8.5, and 9.0 using malformed SAML responses from the SAML identity provider c... |
| CVE-2018-1374 | MEDIUM | 5.3 | 1.4% | Jun 26, 2018 | An IBM WebSphere MQ (Maintenance levels 7.1.0.0 - 7.1.0.9, 7.5.0.0 - 7.5.0.8, 8.0.0.0 - 8.0.0.8, 9.0.0.0 - 9.0.0.2, and ... |
| CVE-2018-12895 | HIGH | 8.8 | 62.6% | Jun 26, 2018 | WordPress through 4.9.6 allows Author users to execute arbitrary code by leveraging directory traversal in the wp-admin/... |
| CVE-2018-10594 | — | — | 69.0% | Jun 26, 2018 | Delta Industrial Automation COMMGR from Delta Electronics versions 1.08 and prior with accompanying PLC Simulators (DVPS... |
| CVE-2018-3760 | — | — | 26.7% | Jun 26, 2018 | There is an information leak vulnerability in Sprockets. Versions Affected: 4.0.0.beta7 and lower, 3.7.1 and lower, 2.12... |
| CVE-2018-12712 | — | — | 2.3% | Jun 26, 2018 | An issue was discovered in Joomla! 2.5.0 through 3.8.8 before 3.8.9. The autoload code checks classnames to be valid, us... |
| CVE-2018-12711 | — | — | 1.4% | Jun 26, 2018 | An XSS issue was discovered in the language switcher module in Joomla! 1.6.0 through 3.8.8 before 3.8.9. In some cases, ... |
| CVE-2018-4861 | — | — | 1.9% | Jun 26, 2018 | A vulnerability has been identified in SCALANCE M875 (All versions). An authenticated remote attacker with access to the... |
| CVE-2018-4860 | — | — | 3.7% | Jun 26, 2018 | A vulnerability has been identified in SCALANCE M875 (All versions). An authenticated remote attacker with access to the... |
| CVE-2018-4859 | — | — | 3.7% | Jun 26, 2018 | A vulnerability has been identified in SCALANCE M875 (All versions). An authenticated remote attacker with access to the... |
| CVE-2018-4846 | — | — | 1.8% | Jun 26, 2018 | A vulnerability has been identified in RAPIDLab 1200 systems / RAPIDPoint 400 systems / RAPIDPoint 500 systems (All vers... |
| CVE-2018-4845 | HIGH | 8.8 | 1.2% | Jun 26, 2018 | A vulnerability has been identified in RAPIDLab 1200 systems / RAPIDPoint 400 systems / RAPIDPoint 500 systems (All vers... |
| CVE-2018-11449 | — | — | 0.4% | Jun 26, 2018 | A vulnerability has been identified in SCALANCE M875 (All versions). An attacker with access to the local file system mi... |
| CVE-2018-11448 | — | — | 0.3% | Jun 26, 2018 | A vulnerability has been identified in SCALANCE M875 (All versions). The web interface on port 443/tcp could allow a sto... |
| CVE-2018-11447 | — | — | 0.6% | Jun 26, 2018 | A vulnerability has been identified in SCALANCE M875 (All versions). The web interface on port 443/tcp could allow a Cro... |
| CVE-2018-1072 | MEDIUM | 5 | 1.0% | Jun 26, 2018 | ovirt-engine before version ovirt 4.2.2 is vulnerable to an information exposure through log files. When engine-backup w... |
| CVE-2018-10664 | — | — | 1.5% | Jun 26, 2018 | An issue was discovered in the httpd process in multiple models of Axis IP Cameras. There is Memory Corruption. |
| CVE-2018-10663 | — | — | 1.5% | Jun 26, 2018 | An issue was discovered in multiple models of Axis IP Cameras. There is an Incorrect Size Calculation. |
| CVE-2018-10662 | — | — | 79.8% | Jun 26, 2018 | An issue was discovered in multiple models of Axis IP Cameras. There is an Exposed Insecure Interface. |
| CVE-2018-10661 | — | — | 86.7% | Jun 26, 2018 | An issue was discovered in multiple models of Axis IP Cameras. There is a bypass of access control. |
Check if your code is affected by 2018 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now