2018 CVE Vulnerabilities

17,817 CVEs published in 2018.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2018-3078MEDIUM4.9Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: DDL). Supported versions that are aff...
CVE-2018-3075MEDIUM4.9Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Security: Privileges). Supported vers...
CVE-2018-3074MEDIUM5.3Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Security: Roles). Supported versions ...
CVE-2018-3073MEDIUM6.5Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Optimizer). Supported versions that a...
CVE-2018-3067MEDIUM4.9Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Replication). Supported versions that...
CVE-2018-3063MEDIUM4.9Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Security: Privileges). Supported vers...
CVE-2018-3060MEDIUM6.5Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: InnoDB). Supported versions that are affected...
CVE-2018-3058MEDIUM4.3Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: MyISAM). Supported versions that are affected...
CVE-2018-2973MEDIUM5.9Vulnerability in the Java SE, Java SE Embedded component of Oracle Java SE (subcomponent: JSSE). Supported versions that...
CVE-2018-2940MEDIUM4.3Vulnerability in the Java SE, Java SE Embedded component of Oracle Java SE (subcomponent: Libraries). Supported versions...
CVE-2018-2934MEDIUM5.3Vulnerability in the Oracle Application Object Library component of Oracle E-Business Suite (subcomponent: Attachments /...
CVE-2018-14355MEDIUM5.3An issue was discovered in Mutt before 1.10.1 and NeoMutt before 2018-07-16. imap/util.c mishandles ".." directory trave...
CVE-2018-1612MEDIUM5.8IBM QRadar Incident Forensics (IBM QRadar SIEM 7.2, and 7.3) could allow a remote attacker to bypass authentication and ...
CVE-2018-6681MEDIUM5.4Abuse of Functionality vulnerability in the web interface in McAfee Network Security Management (NSM) 9.1.7.11 and earli...
CVE-2018-14329MEDIUM4.7In HTSlib 1.8, a race condition in cram/cram_io.c might allow local users to overwrite arbitrary files via a symlink att...
CVE-2018-10857MEDIUM5.9git-annex is vulnerable to a private data exposure and exfiltration attack. It could expose the content of files located...
CVE-2018-10840MEDIUM6.6Linux kernel is vulnerable to a heap-based buffer overflow in the fs/ext4/xattr.c:ext4_xattr_set_entry() function. An at...
CVE-2018-10859MEDIUM5.9git-annex is vulnerable to an Information Exposure when decrypting files. A malicious server for a special remote could ...
CVE-2018-13980MEDIUM5.5The websites that were built from Zeta Producer Desktop CMS before 14.2.1 are vulnerable to unauthenticated file disclos...
CVE-2018-10631MEDIUM6.3The 8840 Clinician Programmer executes the application program from the 8870 Application Card. An attacker with physical...
CVE-2018-1255MEDIUM6.1RSA Identity Lifecycle and Governance versions 7.0.1, 7.0.2 and 7.1.0 contains a reflected cross-site scripting vulnerab...
CVE-2018-14048MEDIUM6.5An issue has been found in libpng 1.6.34. It is a SEGV in the function png_free_data in png.c, related to the recommende...
CVE-2018-14017MEDIUM5.5The r_bin_java_annotation_new function in shlr/java/class.c in radare2 2.7.0 allows remote attackers to cause a denial o...
CVE-2018-14016MEDIUM5.5The r_bin_mdmp_init_directory_entry function in mdmp.c in radare2 2.7.0 allows remote attackers to cause a denial of ser...
CVE-2018-14015MEDIUM5.5The sdb_set_internal function in sdb.c in radare2 2.7.0 allows remote attackers to cause a denial of service (invalid re...

Check if your code is affected by 2018 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now