2018 CVE Vulnerabilities
17,817 CVEs published in 2018.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2018-3078 | MEDIUM | 4.9 | 2.0% | Jul 18, 2018 | Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: DDL). Supported versions that are aff... |
| CVE-2018-3075 | MEDIUM | 4.9 | 2.0% | Jul 18, 2018 | Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Security: Privileges). Supported vers... |
| CVE-2018-3074 | MEDIUM | 5.3 | 1.7% | Jul 18, 2018 | Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Security: Roles). Supported versions ... |
| CVE-2018-3073 | MEDIUM | 6.5 | 2.0% | Jul 18, 2018 | Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Optimizer). Supported versions that a... |
| CVE-2018-3067 | MEDIUM | 4.9 | 2.0% | Jul 18, 2018 | Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Replication). Supported versions that... |
| CVE-2018-3063 | MEDIUM | 4.9 | 3.2% | Jul 18, 2018 | Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Security: Privileges). Supported vers... |
| CVE-2018-3060 | MEDIUM | 6.5 | 2.9% | Jul 18, 2018 | Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: InnoDB). Supported versions that are affected... |
| CVE-2018-3058 | MEDIUM | 4.3 | 2.4% | Jul 18, 2018 | Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: MyISAM). Supported versions that are affected... |
| CVE-2018-2973 | MEDIUM | 5.9 | 4.7% | Jul 18, 2018 | Vulnerability in the Java SE, Java SE Embedded component of Oracle Java SE (subcomponent: JSSE). Supported versions that... |
| CVE-2018-2940 | MEDIUM | 4.3 | 3.1% | Jul 18, 2018 | Vulnerability in the Java SE, Java SE Embedded component of Oracle Java SE (subcomponent: Libraries). Supported versions... |
| CVE-2018-2934 | MEDIUM | 5.3 | 1.9% | Jul 18, 2018 | Vulnerability in the Oracle Application Object Library component of Oracle E-Business Suite (subcomponent: Attachments /... |
| CVE-2018-14355 | MEDIUM | 5.3 | 3.3% | Jul 17, 2018 | An issue was discovered in Mutt before 1.10.1 and NeoMutt before 2018-07-16. imap/util.c mishandles ".." directory trave... |
| CVE-2018-1612 | MEDIUM | 5.8 | 57.0% | Jul 17, 2018 | IBM QRadar Incident Forensics (IBM QRadar SIEM 7.2, and 7.3) could allow a remote attacker to bypass authentication and ... |
| CVE-2018-6681 | MEDIUM | 5.4 | 0.5% | Jul 17, 2018 | Abuse of Functionality vulnerability in the web interface in McAfee Network Security Management (NSM) 9.1.7.11 and earli... |
| CVE-2018-14329 | MEDIUM | 4.7 | 0.2% | Jul 17, 2018 | In HTSlib 1.8, a race condition in cram/cram_io.c might allow local users to overwrite arbitrary files via a symlink att... |
| CVE-2018-10857 | MEDIUM | 5.9 | 1.5% | Jul 16, 2018 | git-annex is vulnerable to a private data exposure and exfiltration attack. It could expose the content of files located... |
| CVE-2018-10840 | MEDIUM | 6.6 | 0.7% | Jul 16, 2018 | Linux kernel is vulnerable to a heap-based buffer overflow in the fs/ext4/xattr.c:ext4_xattr_set_entry() function. An at... |
| CVE-2018-10859 | MEDIUM | 5.9 | 1.4% | Jul 16, 2018 | git-annex is vulnerable to an Information Exposure when decrypting files. A malicious server for a special remote could ... |
| CVE-2018-13980 | MEDIUM | 5.5 | 6.9% | Jul 16, 2018 | The websites that were built from Zeta Producer Desktop CMS before 14.2.1 are vulnerable to unauthenticated file disclos... |
| CVE-2018-10631 | MEDIUM | 6.3 | 0.4% | Jul 13, 2018 | The 8840 Clinician Programmer executes the application program from the 8870 Application Card. An attacker with physical... |
| CVE-2018-1255 | MEDIUM | 6.1 | 1.3% | Jul 13, 2018 | RSA Identity Lifecycle and Governance versions 7.0.1, 7.0.2 and 7.1.0 contains a reflected cross-site scripting vulnerab... |
| CVE-2018-14048 | MEDIUM | 6.5 | 3.0% | Jul 13, 2018 | An issue has been found in libpng 1.6.34. It is a SEGV in the function png_free_data in png.c, related to the recommende... |
| CVE-2018-14017 | MEDIUM | 5.5 | 1.2% | Jul 12, 2018 | The r_bin_java_annotation_new function in shlr/java/class.c in radare2 2.7.0 allows remote attackers to cause a denial o... |
| CVE-2018-14016 | MEDIUM | 5.5 | 1.2% | Jul 12, 2018 | The r_bin_mdmp_init_directory_entry function in mdmp.c in radare2 2.7.0 allows remote attackers to cause a denial of ser... |
| CVE-2018-14015 | MEDIUM | 5.5 | 1.2% | Jul 12, 2018 | The sdb_set_internal function in sdb.c in radare2 2.7.0 allows remote attackers to cause a denial of service (invalid re... |
Check if your code is affected by 2018 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now