2018 CVE Vulnerabilities
17,817 CVEs published in 2018.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2018-6563 | — | — | 2.4% | Jun 20, 2018 | Multiple cross-site request forgery (CSRF) vulnerabilities in totemomail Encryption Gateway before 6.0.0_Build_371 allow... |
| CVE-2018-12558 | — | — | 2.6% | Jun 20, 2018 | The parse() method in the Email::Address module through 1.909 for Perl is vulnerable to Algorithmic complexity on specia... |
| CVE-2018-12327 | — | — | 29.0% | Jun 20, 2018 | Stack-based buffer overflow in ntpq and ntpdc of NTP version 4.2.8p11 allows an attacker to achieve code execution or es... |
| CVE-2018-12594 | HIGH | 7.5 | 1.4% | Jun 20, 2018 | Reliable Controls MACH-ProWebCom 7.80 devices allow remote attackers to obtain sensitive information via a direct reques... |
| CVE-2018-1132 | HIGH | 7.5 | 2.9% | Jun 20, 2018 | A flaw was found in Opendaylight's SDNInterfaceapp (SDNI). Attackers can SQL inject the component's database (SQLite) wi... |
| CVE-2018-1120 | LOW | 2.8 | 7.3% | Jun 20, 2018 | A flaw was found affecting the Linux kernel before version 4.17. By mmap()ing a FUSE-backed file onto a process's memory... |
| CVE-2018-12592 | — | — | 1.5% | Jun 20, 2018 | Polycom RealPresence Web Suite before 2.2.0 does not block a user's video for a few seconds upon joining a meeting (when... |
| CVE-2018-12591 | — | — | 1.9% | Jun 20, 2018 | Ubiquiti Networks EdgeSwitch version 1.7.3 and prior suffer from an improperly neutralized element in an OS command due ... |
| CVE-2018-12590 | HIGH | 7.2 | 1.7% | Jun 20, 2018 | Ubiquiti Networks EdgeSwitch version 1.7.3 and prior suffer from an externally controlled format-string vulnerability du... |
| CVE-2018-12446 | — | — | 0.3% | Jun 20, 2018 | An issue was discovered in the com.dropbox.android application 98.2.2 for Android. The Passcode feature allows authentic... |
| CVE-2018-12445 | — | — | 0.3% | Jun 20, 2018 | An issue was discovered in the com.dropbox.android application 98.2.2 for Android. The FingerprintManager class for Biom... |
| CVE-2018-8030 | — | — | 4.0% | Jun 20, 2018 | A Denial of Service vulnerability was found in Apache Qpid Broker-J versions 7.0.0-7.0.4 when AMQP protocols 0-8, 0-9 or... |
| CVE-2018-11707 | — | — | 0.8% | Jun 20, 2018 | FastStone Image Viewer 6.2 has a User Mode Read and Execute AV at 0x0057898e, triggered when the user opens a malformed ... |
| CVE-2018-11706 | — | — | 0.8% | Jun 20, 2018 | FastStone Image Viewer 6.2 has a User Mode Write AV at 0x00578dd8, triggered when the user opens a malformed JPEG file t... |
| CVE-2018-11705 | — | — | 0.8% | Jun 20, 2018 | FastStone Image Viewer 6.2 has a User Mode Write AV at 0x00578cc4, triggered when the user opens a malformed JPEG file t... |
| CVE-2018-11704 | — | — | 0.8% | Jun 20, 2018 | FastStone Image Viewer 6.2 has a User Mode Write AV at 0x00402d7d, triggered when the user opens a malformed JPEG file t... |
| CVE-2018-11703 | — | — | 0.8% | Jun 20, 2018 | FastStone Image Viewer 6.2 has a User Mode Write AV at 0x00402d6a, triggered when the user opens a malformed JPEG file t... |
| CVE-2018-11702 | — | — | 0.8% | Jun 20, 2018 | FastStone Image Viewer 6.2 has a User Mode Write AV at 0x00578cb3, triggered when the user opens a malformed JPEG file t... |
| CVE-2018-11701 | — | — | 0.8% | Jun 20, 2018 | FastStone Image Viewer 6.2 has a User Mode Write AV at 0x005cb509, triggered when the user opens a malformed JPEG file t... |
| CVE-2018-1117 | MEDIUM | 5 | 1.4% | Jun 20, 2018 | ovirt-ansible-roles before version 1.0.6 has a vulnerability due to a missing no_log directive, resulting in the 'Add oV... |
| CVE-2018-12588 | — | — | 1.6% | Jun 19, 2018 | Cross-site scripting (XSS) vulnerability in templates/frontend/pages/searchResults.tpl in Public Knowledge Project (PKP)... |
| CVE-2018-12519 | — | — | 7.9% | Jun 19, 2018 | An issue was discovered in ShopNx through 2017-11-17. The vulnerability allows a remote attacker to upload any malicious... |
| CVE-2018-12294 | — | — | 2.5% | Jun 19, 2018 | WebCore/platform/graphics/texmap/TextureMapperLayer.cpp in WebKit, as used in WebKitGTK+ prior to version 2.20.2, is vul... |
| CVE-2018-12293 | — | — | 10.5% | Jun 19, 2018 | The getImageData function in the ImageBufferCairo class in WebCore/platform/graphics/cairo/ImageBufferCairo.cpp in WebKi... |
| CVE-2018-12098 | — | — | 0.6% | Jun 19, 2018 | The liblnk_data_block_read function in liblnk_data_block.c in liblnk through 2018-04-19 allows remote attackers to cause... |
Check if your code is affected by 2018 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now