2018 CVE Vulnerabilities

17,817 CVEs published in 2018.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2018-9839——An issue was discovered in MantisBT through 1.3.14, and 2.0.0. Using a crafted request on bug_report_page.php (modifying...
CVE-2018-8047——vtiger CRM 7.0.1 is affected by one reflected Cross-Site Scripting (XSS) vulnerability affecting version 7.0.1 and proba...
CVE-2018-10171——Kromtech MacKeeper 3.20.4 suffers from a root privilege escalation vulnerability through its `com.mackeeper.AdwareAnalyz...
CVE-2018-7125——A remote code execution vulnerability was identified in HPE Intelligent Management Center (IMC) PLAT earlier than versio...
CVE-2018-7124——A remote code execution vulnerability was identified in HPE Intelligent Management Center (IMC) PLAT earlier than versio...
CVE-2018-7123——A remote denial of service vulnerability was identified in HPE Intelligent Management Center (IMC) PLAT earlier than ver...
CVE-2018-7122——A remote disclosure of information vulnerability was identified in HPE Intelligent Management Center (IMC) PLAT earlier ...
CVE-2018-7121——A remote code execution vulnerability was identified in HPE Intelligent Management Center (IMC) PLAT earlier than versio...
CVE-2018-13384——A Host Header Redirection vulnerability in Fortinet FortiOS all versions below 6.0.5 under SSL VPN web portal allows a r...
CVE-2018-5405——The Quest Kace K1000 Appliance, versions prior to 9.0.270, allows an authenticated least privileged user with 'User Cons...
CVE-2018-5404——The Quest Kace K1000 Appliance, versions prior to 9.0.270, allows an authenticated, remote attacker with least privilege...
CVE-2018-20815——In QEMU 3.1.0, load_device_tree in device_tree.c calls the deprecated load_image function, which has a buffer overflow r...
CVE-2018-14425——There is a Persistent XSS vulnerability in the briefcase component of Synacor Zimbra Collaboration Suite (ZCS) Zimbra We...
CVE-2018-10948——Synacor Zimbra Admin UI in Zimbra Collaboration Suite before 8.8.0 beta 2 has Persistent XSS via mail addrs.
CVE-2018-9191——A local privilege escalation in Fortinet FortiClient for Windows 6.0.4 and earlier allows attackers to execute unauthori...
CVE-2018-13368——A local privilege escalation in Fortinet FortiClient for Windows 6.0.4 and earlier allows attacker to execute unauthoriz...
CVE-2018-8029——In Apache Hadoop versions 3.0.0-alpha1 to 3.1.0, 2.9.0 to 2.9.1, and 2.2.0 to 2.8.4, a user who can escalate to yarn use...
CVE-2018-20840——An unhandled exception vulnerability exists during Google Sign-In with Google API C++ Client before 2019-04-10. It poten...
CVE-2018-15131——An issue was discovered in Synacor Zimbra Collaboration Suite 8.6.x before 8.6.0 Patch 11, 8.7.x before 8.7.11 Patch 6, ...
CVE-2018-20160——ZxChat (aka ZeXtras Chat), as used for zimbra-chat and zimbra-talk in Synacor Zimbra Collaboration Suite 8.7 and 8.8 and...
CVE-2018-18631——mailboxd component in Synacor Zimbra Collaboration Suite 8.6, 8.7 before 8.7.11 Patch 7, and 8.8 before 8.8.10 Patch 2 h...
CVE-2018-14013——Synacor Zimbra Collaboration Suite Collaboration before 8.8.11 has XSS in the AJAX and html web clients.
CVE-2018-13365——An Information Exposure vulnerability in Fortinet FortiOS 6.0.1, 5.6.5 and below, allow attackers to learn private IP as...
CVE-2018-19978——A buffer overflow vulnerability in the DHCP and PPPOE configuration interface of the Auerswald COMfort 1200 IP phone 3.4...
CVE-2018-19977——A command injection (missing input validation, escaping) in the ftp upgrade configuration interface on the Auerswald COM...

Check if your code is affected by 2018 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now