2018 CVE Vulnerabilities
17,817 CVEs published in 2018.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2018-5776 | — | — | 2.5% | Jan 18, 2018 | WordPress before 4.9.2 has XSS in the Flash fallback files in MediaElement (under wp-includes/js/mediaelement). |
| CVE-2018-5773 | — | — | 0.8% | Jan 18, 2018 | An issue was discovered in markdown2 (aka python-markdown2) through 2.3.5. The safe_mode feature, which is supposed to s... |
| CVE-2018-5772 | — | — | 1.9% | Jan 18, 2018 | In Exiv2 0.26, there is a segmentation fault caused by uncontrolled recursion in the Exiv2::Image::printIFDStructure fun... |
| CVE-2018-5766 | — | — | 2.5% | Jan 18, 2018 | In Libav through 12.2, there is an invalid memcpy in the av_packet_ref function of libavcodec/avpacket.c. Remote attacke... |
| CVE-2018-0115 | — | — | 0.5% | Jan 18, 2018 | A vulnerability in the CLI of the Cisco StarOS operating system for Cisco ASR 5000 Series routers could allow an authent... |
| CVE-2018-0111 | — | — | 1.8% | Jan 18, 2018 | A vulnerability in Cisco WebEx Meetings Server could allow an unauthenticated, remote attacker to access sensitive data ... |
| CVE-2018-0110 | — | — | 1.5% | Jan 18, 2018 | A vulnerability in Cisco WebEx Meetings Server could allow an authenticated, remote attacker to access the remote suppor... |
| CVE-2018-0109 | — | — | 1.2% | Jan 18, 2018 | A vulnerability in Cisco WebEx Meetings Server could allow an authenticated, remote attacker to access sensitive data ab... |
| CVE-2018-0108 | — | — | 1.9% | Jan 18, 2018 | A vulnerability in Cisco WebEx Meetings Server could allow an unauthenticated, remote attacker to collect customer files... |
| CVE-2018-0107 | — | — | 0.8% | Jan 18, 2018 | A vulnerability in the web framework of Cisco Prime Service Catalog could allow an unauthenticated, remote attacker to e... |
| CVE-2018-0102 | — | — | 0.8% | Jan 18, 2018 | A vulnerability in the Pong tool of Cisco NX-OS Software could allow an unauthenticated, adjacent attacker to cause a re... |
| CVE-2018-0100 | — | — | 0.4% | Jan 18, 2018 | A vulnerability in the Profile Editor of the Cisco AnyConnect Secure Mobility Client could allow an unauthenticated, loc... |
| CVE-2018-0099 | — | — | 3.4% | Jan 18, 2018 | A vulnerability in the web management GUI of the Cisco D9800 Network Transport Receiver could allow an authenticated, re... |
| CVE-2018-0098 | — | — | 0.9% | Jan 18, 2018 | A vulnerability in the web-based management interface of Cisco WAP150 Wireless-AC/N Dual Radio Access Point with Power o... |
| CVE-2018-0097 | — | — | 1.2% | Jan 18, 2018 | A vulnerability in the web interface of Cisco Prime Infrastructure could allow an unauthenticated, remote attacker to re... |
| CVE-2018-0096 | — | — | 1.4% | Jan 18, 2018 | A vulnerability in the role-based access control (RBAC) functionality of Cisco Prime Infrastructure could allow an authe... |
| CVE-2018-0095 | — | — | 0.4% | Jan 18, 2018 | A vulnerability in the administrative shell of Cisco AsyncOS on Cisco Email Security Appliance (ESA) and Content Securit... |
| CVE-2018-0094 | — | — | 2.3% | Jan 18, 2018 | A vulnerability in IPv6 ingress packet processing for Cisco UCS Central Software could allow an unauthenticated, remote ... |
| CVE-2018-0093 | — | — | 1.2% | Jan 18, 2018 | A vulnerability in the web-based management interface of Cisco Web Security Appliance (WSA) could allow an unauthenticat... |
| CVE-2018-0092 | — | — | 0.3% | Jan 18, 2018 | A vulnerability in the network-operator user role implementation for Cisco NX-OS System Software could allow an authenti... |
| CVE-2018-0091 | — | — | 1.2% | Jan 18, 2018 | A vulnerability in the web-based management interface of Cisco Identity Services Engine (ISE) could allow an unauthentic... |
| CVE-2018-0090 | — | — | 2.7% | Jan 18, 2018 | A vulnerability in management interface access control list (ACL) configuration of Cisco NX-OS System Software could all... |
| CVE-2018-0089 | — | — | 1.1% | Jan 18, 2018 | A vulnerability in the Policy and Charging Rules Function (PCRF) of the Cisco Policy Suite (CPS) could allow an unauthen... |
| CVE-2018-0088 | — | — | 0.4% | Jan 18, 2018 | A vulnerability in one of the diagnostic test CLI commands on Cisco Industrial Ethernet 4010 Series Switches running Cis... |
| CVE-2018-0086 | — | — | 2.3% | Jan 18, 2018 | A vulnerability in the application server of the Cisco Unified Customer Voice Portal (CVP) could allow an unauthenticate... |
Check if your code is affected by 2018 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now