2018 CVE Vulnerabilities
17,817 CVEs published in 2018.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2018-9276 | HIGH | 7.2 | 87.2% | Jul 2, 2018 | An issue was discovered in PRTG Network Monitor before 18.2.39. An attacker who has access to the PRTG System Administra... |
| CVE-2018-10874 | HIGH | 7.8 | 0.5% | Jul 2, 2018 | In ansible it was found that inventory variables are loaded from current working directory when running ad-hoc command w... |
| CVE-2018-13041 | HIGH | 7.5 | 0.9% | Jul 1, 2018 | The mint function of a smart contract implementation for Link Platform (LNK), an Ethereum ERC20 token, has an integer ov... |
| CVE-2018-12997 | HIGH | 7.5 | 6.7% | Jun 29, 2018 | Incorrect Access Control in FailOverHelperServlet in Zoho ManageEngine Netflow Analyzer before build 123137, Network Con... |
| CVE-2018-12923 | HIGH | 7.5 | 1.3% | Jun 28, 2018 | BWS Systems HA-Bridge devices allow remote attackers to obtain potentially sensitive information via a direct request fo... |
| CVE-2018-12922 | HIGH | 7.5 | 1.6% | Jun 28, 2018 | Emerson Liebert IntelliSlot Web Card devices allow remote attackers to reconfigure access control via the config/configU... |
| CVE-2018-12920 | HIGH | 7.5 | 1.8% | Jun 28, 2018 | Brickstream 2300 devices allow remote attackers to obtain potentially sensitive information via a direct request for the... |
| CVE-2018-3841 | HIGH | 7.5 | 1.6% | Jun 26, 2018 | A denial-of-service vulnerability exists in the Pixar Renderman IT Display Service 21.6 (0x69). The vulnerability is pre... |
| CVE-2018-3840 | HIGH | 7.5 | 1.6% | Jun 26, 2018 | A denial-of-service vulnerability exists in the Pixar Renderman IT Display Service 21.6 (0x67). The vulnerability is pre... |
| CVE-2018-12895 | HIGH | 8.8 | 62.6% | Jun 26, 2018 | WordPress through 4.9.6 allows Author users to execute arbitrary code by leveraging directory traversal in the wp-admin/... |
| CVE-2018-4845 | HIGH | 8.8 | 1.2% | Jun 26, 2018 | A vulnerability has been identified in RAPIDLab 1200 systems / RAPIDPoint 400 systems / RAPIDPoint 500 systems (All vers... |
| CVE-2018-1000535 | HIGH | 7.5 | 1.8% | Jun 26, 2018 | lms version <= LMS_011123 contains a Local File Disclosure vulnerability in File reading functionality in LMS module tha... |
| CVE-2018-1000518 | HIGH | 7.5 | 1.8% | Jun 26, 2018 | aaugustin websockets version 4 contains a CWE-409: Improper Handling of Highly Compressed Data (Data Amplification) vuln... |
| CVE-2018-1000500 | HIGH | 8.1 | 2.5% | Jun 26, 2018 | Busybox contains a Missing SSL certificate validation vulnerability in The "busybox wget" applet that can result in arbi... |
| CVE-2018-0598 | HIGH | 7.8 | 9.0% | Jun 26, 2018 | Untrusted search path vulnerability in Self-extracting archive files created by IExpress bundled with Microsoft Windows ... |
| CVE-2018-11040 | HIGH | 7.5 | 3.2% | Jun 25, 2018 | Spring Framework, versions 5.0.x prior to 5.0.7 and 4.3.x prior to 4.3.18 and older unsupported versions, allows web app... |
| CVE-2018-12613 | HIGH | 8.8 | 98.4% | Jun 21, 2018 | An issue was discovered in phpMyAdmin 4.8.x before 4.8.2, in which an attacker can include (view and potentially execute... |
| CVE-2018-12617 | HIGH | 7.5 | 25.3% | Jun 21, 2018 | qmp_guest_file_read in qga/commands-posix.c and qga/commands-win32.c in qemu-ga (aka QEMU Guest Agent) in QEMU 2.12.50 h... |
| CVE-2018-0358 | HIGH | 7.5 | 3.4% | Jun 21, 2018 | A vulnerability in the file descriptor handling of Cisco TelePresence Video Communication Server (VCS) Expressway could ... |
| CVE-2018-0337 | HIGH | 7.8 | 0.3% | Jun 21, 2018 | A vulnerability in the role-based access-checking mechanisms of Cisco NX-OS Software could allow an authenticated, local... |
| CVE-2018-0313 | HIGH | 8.8 | 4.0% | Jun 21, 2018 | A vulnerability in the NX-API feature of Cisco NX-OS Software could allow an authenticated, remote attacker to send a ma... |
| CVE-2018-0306 | HIGH | 7.8 | 0.6% | Jun 21, 2018 | A vulnerability in the CLI parser of Cisco NX-OS Software could allow an authenticated, local attacker to perform a comm... |
| CVE-2018-0302 | HIGH | 7.8 | 0.4% | Jun 21, 2018 | A vulnerability in the CLI parser of Cisco FXOS Software and Cisco UCS Fabric Interconnect Software could allow an authe... |
| CVE-2018-0307 | HIGH | 7.8 | 0.6% | Jun 20, 2018 | A vulnerability in the CLI of Cisco NX-OS Software could allow an authenticated, local attacker to perform a command-inj... |
| CVE-2018-5428 | HIGH | 8.8 | 3.0% | Jun 20, 2018 | The version control adapters component of TIBCO Data Virtualization (formerly known as Cisco Information Server) contain... |
Check if your code is affected by 2018 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now