2018 CVE Vulnerabilities

17,817 CVEs published in 2018.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2018-9839An issue was discovered in MantisBT through 1.3.14, and 2.0.0. Using a crafted request on bug_report_page.php (modifying...
CVE-2018-8047vtiger CRM 7.0.1 is affected by one reflected Cross-Site Scripting (XSS) vulnerability affecting version 7.0.1 and proba...
CVE-2018-10171Kromtech MacKeeper 3.20.4 suffers from a root privilege escalation vulnerability through its `com.mackeeper.AdwareAnalyz...
CVE-2018-7125A remote code execution vulnerability was identified in HPE Intelligent Management Center (IMC) PLAT earlier than versio...
CVE-2018-7124A remote code execution vulnerability was identified in HPE Intelligent Management Center (IMC) PLAT earlier than versio...
CVE-2018-7123A remote denial of service vulnerability was identified in HPE Intelligent Management Center (IMC) PLAT earlier than ver...
CVE-2018-7122A remote disclosure of information vulnerability was identified in HPE Intelligent Management Center (IMC) PLAT earlier ...
CVE-2018-7121A remote code execution vulnerability was identified in HPE Intelligent Management Center (IMC) PLAT earlier than versio...
CVE-2018-13384A Host Header Redirection vulnerability in Fortinet FortiOS all versions below 6.0.5 under SSL VPN web portal allows a r...
CVE-2018-5405The Quest Kace K1000 Appliance, versions prior to 9.0.270, allows an authenticated least privileged user with 'User Cons...
CVE-2018-5404The Quest Kace K1000 Appliance, versions prior to 9.0.270, allows an authenticated, remote attacker with least privilege...
CVE-2018-20815In QEMU 3.1.0, load_device_tree in device_tree.c calls the deprecated load_image function, which has a buffer overflow r...
CVE-2018-14425There is a Persistent XSS vulnerability in the briefcase component of Synacor Zimbra Collaboration Suite (ZCS) Zimbra We...
CVE-2018-10948Synacor Zimbra Admin UI in Zimbra Collaboration Suite before 8.8.0 beta 2 has Persistent XSS via mail addrs.
CVE-2018-9191A local privilege escalation in Fortinet FortiClient for Windows 6.0.4 and earlier allows attackers to execute unauthori...
CVE-2018-13368A local privilege escalation in Fortinet FortiClient for Windows 6.0.4 and earlier allows attacker to execute unauthoriz...
CVE-2018-8029In Apache Hadoop versions 3.0.0-alpha1 to 3.1.0, 2.9.0 to 2.9.1, and 2.2.0 to 2.8.4, a user who can escalate to yarn use...
CVE-2018-20840An unhandled exception vulnerability exists during Google Sign-In with Google API C++ Client before 2019-04-10. It poten...
CVE-2018-15131An issue was discovered in Synacor Zimbra Collaboration Suite 8.6.x before 8.6.0 Patch 11, 8.7.x before 8.7.11 Patch 6, ...
CVE-2018-20160ZxChat (aka ZeXtras Chat), as used for zimbra-chat and zimbra-talk in Synacor Zimbra Collaboration Suite 8.7 and 8.8 and...
CVE-2018-18631mailboxd component in Synacor Zimbra Collaboration Suite 8.6, 8.7 before 8.7.11 Patch 7, and 8.8 before 8.8.10 Patch 2 h...
CVE-2018-14013Synacor Zimbra Collaboration Suite Collaboration before 8.8.11 has XSS in the AJAX and html web clients.
CVE-2018-13365An Information Exposure vulnerability in Fortinet FortiOS 6.0.1, 5.6.5 and below, allow attackers to learn private IP as...
CVE-2018-19978A buffer overflow vulnerability in the DHCP and PPPOE configuration interface of the Auerswald COMfort 1200 IP phone 3.4...
CVE-2018-19977A command injection (missing input validation, escaping) in the ftp upgrade configuration interface on the Auerswald COM...

Check if your code is affected by 2018 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now