2018 CVE Vulnerabilities
17,817 CVEs published in 2018.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2018-1000891 | HIGH | 7.5 | 1.0% | Dec 23, 2020 | Bitcoin SV before 0.1.1 allows uncontrolled resource consumption when receiving messages with invalid checksums. |
| CVE-2018-15645 | MEDIUM | 6.5 | 0.9% | Dec 22, 2020 | Improper access control in message routing in Odoo Community 12.0 and earlier and Odoo Enterprise 12.0 and earlier allow... |
| CVE-2018-15641 | MEDIUM | 5.4 | 0.7% | Dec 22, 2020 | Cross-site scripting (XSS) issue in web module in Odoo Community 11.0 through 14.0 and Odoo Enterprise 11.0 through 14.0... |
| CVE-2018-15638 | MEDIUM | 5.4 | 0.7% | Dec 22, 2020 | Cross-site scripting (XSS) issue in mail module in Odoo Community 13.0 and earlier and Odoo Enterprise 13.0 and earlier,... |
| CVE-2018-15634 | MEDIUM | 6.1 | 0.9% | Dec 22, 2020 | Cross-site scripting (XSS) issue in attachment management in Odoo Community 14.0 and earlier and Odoo Enterprise 14.0 an... |
| CVE-2018-15633 | MEDIUM | 6.1 | 0.9% | Dec 22, 2020 | Cross-site scripting (XSS) issue in "document" module in Odoo Community 11.0 and earlier and Odoo Enterprise 11.0 and ea... |
| CVE-2018-15632 | CRITICAL | 9.1 | 1.2% | Dec 22, 2020 | Improper input validation in database creation logic in Odoo Community 11.0 and earlier and Odoo Enterprise 11.0 and ear... |
| CVE-2018-7580 | HIGH | 7.5 | 2.3% | Dec 21, 2020 | Philips Hue is vulnerable to a Denial of Service attack. Sending a SYN flood on port tcp/80 will freeze Philips Hue's hu... |
| CVE-2018-16243 | MEDIUM | 5.4 | 1.4% | Dec 15, 2020 | SolarWinds Database Performance Analyzer (DPA) 11.1.468 and 12.0.3074 have several persistent XSS vulnerabilities, relat... |
| CVE-2018-21270 | MEDIUM | 6.5 | 3.6% | Dec 3, 2020 | Versions less than 0.0.6 of the Node.js stringstream module are vulnerable to an out-of-bounds read because of allocatio... |
| CVE-2018-16723 | HIGH | 7.8 | 0.3% | Nov 23, 2020 | In Jingyun Antivirus v2.4.2.39, the driver file (ZySandbox.sys) allows local users to cause a denial of service (BSOD) o... |
| CVE-2018-16722 | HIGH | 7.8 | 0.3% | Nov 23, 2020 | In Jingyun Antivirus v2.4.2.39, the driver file (ZySandbox.sys) allows local users to cause a denial of service (BSOD) o... |
| CVE-2018-16721 | HIGH | 7.8 | 0.3% | Nov 23, 2020 | In Jingyun Antivirus v2.4.2.39, the driver file (ZySandbox.sys) allows local users to cause a denial of service (BSOD) o... |
| CVE-2018-16720 | HIGH | 7.8 | 0.3% | Nov 23, 2020 | In Jingyun Antivirus v2.4.2.39, the driver file (ZySandbox.sys) allows local users to cause a denial of service (BSOD) o... |
| CVE-2018-16719 | HIGH | 7.8 | 0.3% | Nov 23, 2020 | In Jingyun Antivirus v2.4.2.39, the driver file (hookbody.sys) allows local users to cause a denial of service (BSOD) or... |
| CVE-2018-20803 | MEDIUM | 6.5 | 1.3% | Nov 23, 2020 | A user authorized to perform database queries may trigger denial of service by issuing specially crafted queries, which ... |
| CVE-2018-20805 | MEDIUM | 6.5 | 1.2% | Nov 23, 2020 | A user authorized to perform database queries may trigger denial of service by issuing specially crafted queries, which ... |
| CVE-2018-20804 | MEDIUM | 6.5 | 1.2% | Nov 23, 2020 | A user authorized to perform database queries may trigger denial of service by issuing specially crafted applyOps invoca... |
| CVE-2018-20802 | MEDIUM | 6.5 | 1.5% | Nov 23, 2020 | A user authorized to perform database queries may trigger denial of service by issuing specially crafted queries with co... |
| CVE-2018-16936 | — | — | — | Nov 6, 2020 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. No... |
| CVE-2018-16935 | — | — | — | Nov 6, 2020 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. No... |
| CVE-2018-16934 | — | — | — | Nov 6, 2020 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. No... |
| CVE-2018-16933 | — | — | — | Nov 6, 2020 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. No... |
| CVE-2018-16932 | — | — | — | Nov 6, 2020 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. No... |
| CVE-2018-16931 | — | — | — | Nov 6, 2020 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. No... |
Check if your code is affected by 2018 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now