2018 CVE Vulnerabilities

17,817 CVEs published in 2018.

CVE IDSeverityCVSSDescription
CVE-2018-0298A vulnerability in the web UI of Cisco FXOS and Cisco UCS Fabric Interconnect Software could allow an unauthenticated, r...
CVE-2018-0330A vulnerability in the NX-API management application programming interface (API) in devices running, or based on, Cisco ...
CVE-2018-0314A vulnerability in the Cisco Fabric Services (CFS) component of Cisco FXOS Software and Cisco NX-OS Software could allow...
CVE-2018-0312A vulnerability in the Cisco Fabric Services component of Cisco FXOS Software and Cisco NX-OS Software could allow an un...
CVE-2018-0308A vulnerability in the Cisco Fabric Services component of Cisco FXOS Software and Cisco NX-OS Software could allow an un...
CVE-2018-0307HIGH7.8A vulnerability in the CLI of Cisco NX-OS Software could allow an authenticated, local attacker to perform a command-inj...
CVE-2018-0304A vulnerability in the Cisco Fabric Services component of Cisco FXOS Software and Cisco NX-OS Software could allow an un...
CVE-2018-0301A vulnerability in the NX-API feature of Cisco NX-OS Software could allow an unauthenticated, remote attacker to craft a...
CVE-2018-0295A vulnerability in the Border Gateway Protocol (BGP) implementation of Cisco NX-OS Software could allow an unauthenticat...
CVE-2018-0294A vulnerability in the write-erase feature of Cisco FXOS Software and Cisco NX-OS Software could allow an authenticated,...
CVE-2018-0293A vulnerability in role-based access control (RBAC) for Cisco NX-OS Software could allow an authenticated, remote attack...
CVE-2018-0292A vulnerability in the Internet Group Management Protocol (IGMP) Snooping feature of Cisco NX-OS Software could allow an...
CVE-2018-0291A vulnerability in the Simple Network Management Protocol (SNMP) input packet processor of Cisco NX-OS Software could al...
CVE-2018-12604GreenCMS 2.3.0603 allows remote attackers to obtain sensitive information via a direct request for Data/Log/year_month_d...
CVE-2018-5428HIGH8.8The version control adapters component of TIBCO Data Virtualization (formerly known as Cisco Information Server) contain...
CVE-2018-12601There is a heap-based buffer overflow in ReadImage in input-tga.ci in sam2p 0.49.4 that leads to a denial of service or ...
CVE-2018-12600In ImageMagick 7.0.8-3 Q16, ReadDIBImage and WriteDIBImage in coders/dib.c allow attackers to cause an out of bounds wri...
CVE-2018-12599In ImageMagick 7.0.8-3 Q16, ReadBMPImage and WriteBMPImage in coders/bmp.c allow attackers to cause an out of bounds wri...
CVE-2018-10841HIGH8.8glusterfs is vulnerable to privilege escalation on gluster server nodes. An authenticated gluster client via TLS could u...
CVE-2018-6213In the web server on D-Link DIR-620 devices with a certain customized (by ISP) variant of firmware 1.0.3, 1.0.37, 1.3.1,...
CVE-2018-6212On D-Link DIR-620 devices with a certain customized (by ISP) variant of firmware 1.0.3, 1.0.37, 1.3.1, 1.3.3, 1.3.7, 1.4...
CVE-2018-6211On D-Link DIR-620 devices with a certain customized (by ISP) variant of firmware 1.0.3, 1.0.37, 1.3.1, 1.3.3, 1.3.7, 1.4...
CVE-2018-5237Symantec Endpoint Protection prior to 14 RU1 MP1 or 12.1 RU6 MP10 could be susceptible to a privilege escalation vulnera...
CVE-2018-5236Symantec Endpoint Protection prior to 14 RU1 MP1 or 12.1 RU6 MP10 may be susceptible to a race condition (or race hazard...
CVE-2018-9036CheckSec Canopy 3.x before 3.0.7 has stored XSS via the Login Page Disclaimer, allowing attacks by low-privileged users ...

Check if your code is affected by 2018 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now