2018 CVE Vulnerabilities
17,817 CVEs published in 2018.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2018-11009 | HIGH | 7.8 | 0.8% | Jan 11, 2021 | A Buffer Overflow issue was discovered in K7Computing K7AntiVirus Premium 15.01.00.53. |
| CVE-2018-11008 | MEDIUM | 5.5 | 0.6% | Jan 11, 2021 | An Incorrect Access Control issue was discovered in K7Computing K7AntiVirus Premium 15.01.00.53. |
| CVE-2018-11007 | MEDIUM | 5.5 | 0.7% | Jan 11, 2021 | A Memory Leak issue was discovered in K7Computing K7AntiVirus Premium 15.01.00.53. |
| CVE-2018-11006 | MEDIUM | 5.5 | 0.7% | Jan 11, 2021 | An Incorrect Access Control issue was discovered in K7Computing K7AntiVirus Premium 15.01.00.53. |
| CVE-2018-11005 | MEDIUM | 5.5 | 0.7% | Jan 11, 2021 | A Memory Leak issue was discovered in K7Computing K7AntiVirus Premium 15.01.00.53. |
| CVE-2018-20316 | HIGH | 8.1 | 0.8% | Jan 7, 2021 | Foxit Reader before 9.5, and PhantomPDF before 8.3.10 and 9.x before 9.5, has a proxyDoAction race condition that can ca... |
| CVE-2018-20315 | HIGH | 8.1 | 0.8% | Jan 7, 2021 | Foxit Reader before 9.5, and PhantomPDF before 8.3.10 and 9.x before 9.5, has a race condition that can cause a stack-ba... |
| CVE-2018-20314 | HIGH | 8.1 | 0.8% | Jan 7, 2021 | Foxit Reader before 9.5, and PhantomPDF before 8.3.10 and 9.x before 9.5, has a proxyCheckLicence race condition that ca... |
| CVE-2018-20313 | HIGH | 8.1 | 0.8% | Jan 7, 2021 | Foxit Reader before 9.5, and PhantomPDF before 8.3.10 and 9.x before 9.5, has a proxyPreviewAction race condition that c... |
| CVE-2018-18689 | MEDIUM | 5.3 | 3.7% | Jan 7, 2021 | The Portable Document Format (PDF) specification does not provide any information regarding the concrete procedure of ho... |
| CVE-2018-18688 | MEDIUM | 5.3 | 1.1% | Jan 7, 2021 | The Portable Document Format (PDF) specification does not provide any information regarding the concrete procedure of ho... |
| CVE-2018-20312 | HIGH | 8.1 | 0.8% | Jan 7, 2021 | Foxit Reader before 9.5, and PhantomPDF before 8.3.10 and 9.x before 9.5, has a proxyDoAction race condition that can ca... |
| CVE-2018-20311 | HIGH | 8.1 | 0.8% | Jan 7, 2021 | Foxit Reader before 9.5, and PhantomPDF before 8.3.10 and 9.x before 9.5, has a proxyCPDFAction race condition that can ... |
| CVE-2018-20310 | HIGH | 8.1 | 0.9% | Jan 7, 2021 | Foxit Reader before 9.5, and PhantomPDF before 8.3.10 and 9.x before 9.5, has a proxyDoAction race condition that can ca... |
| CVE-2018-20309 | HIGH | 8.1 | 0.8% | Jan 7, 2021 | Foxit Reader before 9.5, and PhantomPDF before 8.3.10 and 9.x before 9.5, has a proxyGetAppEdition race condition that c... |
| CVE-2018-19418 | HIGH | 7.8 | 8.0% | Jan 7, 2021 | Foxit PDF ActiveX before 5.5.1 allows remote code execution via command injection because of the lack of a security perm... |
| CVE-2018-25002 | HIGH | 8.8 | 1.4% | Jan 1, 2021 | uploader.php in the KCFinder integration project through 2018-06-01 for Drupal mishandles validation, aka SA-CONTRIB-201... |
| CVE-2018-19945 | CRITICAL | 9.1 | 1.1% | Dec 31, 2020 | A vulnerability has been reported to affect earlier QNAP devices running QTS 4.3.4 to 4.3.6. Caused by improper limitati... |
| CVE-2018-19944 | HIGH | 7.5 | 0.8% | Dec 31, 2020 | A cleartext transmission of sensitive information vulnerability has been reported to affect certain QTS devices. If expl... |
| CVE-2018-19941 | HIGH | 7.5 | 0.7% | Dec 31, 2020 | A vulnerability has been reported to affect QNAP NAS. If exploited, this vulnerability allows an attacker to access sens... |
| CVE-2018-25001 | MEDIUM | 6.5 | 1.0% | Dec 31, 2020 | An issue was discovered in the libpulse-binding crate before 2.5.0 for Rust. proplist::Iterator can cause a use-after-fr... |
| CVE-2018-16795 | HIGH | 8.8 | 0.6% | Dec 31, 2020 | OpenEMR 5.0.1.3 allows Cross-Site Request Forgery (CSRF) via library/ajax and interface/super, as demonstrated by use of... |
| CVE-2018-14067 | CRITICAL | 9.8 | 7.0% | Dec 31, 2020 | Green Packet WiMax DV-360 2.10.14-g1.0.6.1 devices allow Command Injection, with unauthenticated remote command executio... |
| CVE-2018-1000893 | HIGH | 7.5 | 1.0% | Dec 23, 2020 | Bitcoin SV before 0.1.1 allows uncontrolled resource consumption when deserializing transactions. |
| CVE-2018-1000892 | HIGH | 7.5 | 1.0% | Dec 23, 2020 | Bitcoin SV before 0.1.1 allows uncontrolled resource consumption when receiving sendheaders messages. |
Check if your code is affected by 2018 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now