2018 CVE Vulnerabilities

17,817 CVEs published in 2018.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2018-5776WordPress before 4.9.2 has XSS in the Flash fallback files in MediaElement (under wp-includes/js/mediaelement).
CVE-2018-5773An issue was discovered in markdown2 (aka python-markdown2) through 2.3.5. The safe_mode feature, which is supposed to s...
CVE-2018-5772In Exiv2 0.26, there is a segmentation fault caused by uncontrolled recursion in the Exiv2::Image::printIFDStructure fun...
CVE-2018-5766In Libav through 12.2, there is an invalid memcpy in the av_packet_ref function of libavcodec/avpacket.c. Remote attacke...
CVE-2018-0115A vulnerability in the CLI of the Cisco StarOS operating system for Cisco ASR 5000 Series routers could allow an authent...
CVE-2018-0111A vulnerability in Cisco WebEx Meetings Server could allow an unauthenticated, remote attacker to access sensitive data ...
CVE-2018-0110A vulnerability in Cisco WebEx Meetings Server could allow an authenticated, remote attacker to access the remote suppor...
CVE-2018-0109A vulnerability in Cisco WebEx Meetings Server could allow an authenticated, remote attacker to access sensitive data ab...
CVE-2018-0108A vulnerability in Cisco WebEx Meetings Server could allow an unauthenticated, remote attacker to collect customer files...
CVE-2018-0107A vulnerability in the web framework of Cisco Prime Service Catalog could allow an unauthenticated, remote attacker to e...
CVE-2018-0102A vulnerability in the Pong tool of Cisco NX-OS Software could allow an unauthenticated, adjacent attacker to cause a re...
CVE-2018-0100A vulnerability in the Profile Editor of the Cisco AnyConnect Secure Mobility Client could allow an unauthenticated, loc...
CVE-2018-0099A vulnerability in the web management GUI of the Cisco D9800 Network Transport Receiver could allow an authenticated, re...
CVE-2018-0098A vulnerability in the web-based management interface of Cisco WAP150 Wireless-AC/N Dual Radio Access Point with Power o...
CVE-2018-0097A vulnerability in the web interface of Cisco Prime Infrastructure could allow an unauthenticated, remote attacker to re...
CVE-2018-0096A vulnerability in the role-based access control (RBAC) functionality of Cisco Prime Infrastructure could allow an authe...
CVE-2018-0095A vulnerability in the administrative shell of Cisco AsyncOS on Cisco Email Security Appliance (ESA) and Content Securit...
CVE-2018-0094A vulnerability in IPv6 ingress packet processing for Cisco UCS Central Software could allow an unauthenticated, remote ...
CVE-2018-0093A vulnerability in the web-based management interface of Cisco Web Security Appliance (WSA) could allow an unauthenticat...
CVE-2018-0092A vulnerability in the network-operator user role implementation for Cisco NX-OS System Software could allow an authenti...
CVE-2018-0091A vulnerability in the web-based management interface of Cisco Identity Services Engine (ISE) could allow an unauthentic...
CVE-2018-0090A vulnerability in management interface access control list (ACL) configuration of Cisco NX-OS System Software could all...
CVE-2018-0089A vulnerability in the Policy and Charging Rules Function (PCRF) of the Cisco Policy Suite (CPS) could allow an unauthen...
CVE-2018-0088A vulnerability in one of the diagnostic test CLI commands on Cisco Industrial Ethernet 4010 Series Switches running Cis...
CVE-2018-0086A vulnerability in the application server of the Cisco Unified Customer Voice Portal (CVP) could allow an unauthenticate...

Check if your code is affected by 2018 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now