2018 CVE Vulnerabilities
17,817 CVEs published in 2018.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2018-0298 | — | — | 1.9% | Jun 21, 2018 | A vulnerability in the web UI of Cisco FXOS and Cisco UCS Fabric Interconnect Software could allow an unauthenticated, r... |
| CVE-2018-0330 | — | — | 2.8% | Jun 20, 2018 | A vulnerability in the NX-API management application programming interface (API) in devices running, or based on, Cisco ... |
| CVE-2018-0314 | — | — | 6.0% | Jun 20, 2018 | A vulnerability in the Cisco Fabric Services (CFS) component of Cisco FXOS Software and Cisco NX-OS Software could allow... |
| CVE-2018-0312 | — | — | 5.7% | Jun 20, 2018 | A vulnerability in the Cisco Fabric Services component of Cisco FXOS Software and Cisco NX-OS Software could allow an un... |
| CVE-2018-0308 | — | — | 5.7% | Jun 20, 2018 | A vulnerability in the Cisco Fabric Services component of Cisco FXOS Software and Cisco NX-OS Software could allow an un... |
| CVE-2018-0307 | HIGH | 7.8 | 0.6% | Jun 20, 2018 | A vulnerability in the CLI of Cisco NX-OS Software could allow an authenticated, local attacker to perform a command-inj... |
| CVE-2018-0304 | — | — | 8.7% | Jun 20, 2018 | A vulnerability in the Cisco Fabric Services component of Cisco FXOS Software and Cisco NX-OS Software could allow an un... |
| CVE-2018-0301 | — | — | 17.7% | Jun 20, 2018 | A vulnerability in the NX-API feature of Cisco NX-OS Software could allow an unauthenticated, remote attacker to craft a... |
| CVE-2018-0295 | — | — | 2.5% | Jun 20, 2018 | A vulnerability in the Border Gateway Protocol (BGP) implementation of Cisco NX-OS Software could allow an unauthenticat... |
| CVE-2018-0294 | — | — | 0.5% | Jun 20, 2018 | A vulnerability in the write-erase feature of Cisco FXOS Software and Cisco NX-OS Software could allow an authenticated,... |
| CVE-2018-0293 | — | — | 4.8% | Jun 20, 2018 | A vulnerability in role-based access control (RBAC) for Cisco NX-OS Software could allow an authenticated, remote attack... |
| CVE-2018-0292 | — | — | 1.5% | Jun 20, 2018 | A vulnerability in the Internet Group Management Protocol (IGMP) Snooping feature of Cisco NX-OS Software could allow an... |
| CVE-2018-0291 | — | — | 2.0% | Jun 20, 2018 | A vulnerability in the Simple Network Management Protocol (SNMP) input packet processor of Cisco NX-OS Software could al... |
| CVE-2018-12604 | — | — | 13.3% | Jun 20, 2018 | GreenCMS 2.3.0603 allows remote attackers to obtain sensitive information via a direct request for Data/Log/year_month_d... |
| CVE-2018-5428 | HIGH | 8.8 | 3.0% | Jun 20, 2018 | The version control adapters component of TIBCO Data Virtualization (formerly known as Cisco Information Server) contain... |
| CVE-2018-12601 | — | — | 2.1% | Jun 20, 2018 | There is a heap-based buffer overflow in ReadImage in input-tga.ci in sam2p 0.49.4 that leads to a denial of service or ... |
| CVE-2018-12600 | — | — | 3.3% | Jun 20, 2018 | In ImageMagick 7.0.8-3 Q16, ReadDIBImage and WriteDIBImage in coders/dib.c allow attackers to cause an out of bounds wri... |
| CVE-2018-12599 | — | — | 3.3% | Jun 20, 2018 | In ImageMagick 7.0.8-3 Q16, ReadBMPImage and WriteBMPImage in coders/bmp.c allow attackers to cause an out of bounds wri... |
| CVE-2018-10841 | HIGH | 8.8 | 1.3% | Jun 20, 2018 | glusterfs is vulnerable to privilege escalation on gluster server nodes. An authenticated gluster client via TLS could u... |
| CVE-2018-6213 | — | — | 3.4% | Jun 20, 2018 | In the web server on D-Link DIR-620 devices with a certain customized (by ISP) variant of firmware 1.0.3, 1.0.37, 1.3.1,... |
| CVE-2018-6212 | — | — | 1.8% | Jun 20, 2018 | On D-Link DIR-620 devices with a certain customized (by ISP) variant of firmware 1.0.3, 1.0.37, 1.3.1, 1.3.3, 1.3.7, 1.4... |
| CVE-2018-6211 | — | — | 5.8% | Jun 20, 2018 | On D-Link DIR-620 devices with a certain customized (by ISP) variant of firmware 1.0.3, 1.0.37, 1.3.1, 1.3.3, 1.3.7, 1.4... |
| CVE-2018-5237 | — | — | 2.0% | Jun 20, 2018 | Symantec Endpoint Protection prior to 14 RU1 MP1 or 12.1 RU6 MP10 could be susceptible to a privilege escalation vulnera... |
| CVE-2018-5236 | — | — | 1.1% | Jun 20, 2018 | Symantec Endpoint Protection prior to 14 RU1 MP1 or 12.1 RU6 MP10 may be susceptible to a race condition (or race hazard... |
| CVE-2018-9036 | — | — | 0.5% | Jun 20, 2018 | CheckSec Canopy 3.x before 3.0.7 has stored XSS via the Login Page Disclaimer, allowing attacks by low-privileged users ... |
Check if your code is affected by 2018 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now