2018 CVE Vulnerabilities
17,817 CVEs published in 2018.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2018-1268 | MEDIUM | 6.8 | 1.0% | Jun 6, 2018 | Cloud Foundry Loggregator, versions 89.x prior to 89.5 or 96.x prior to 96.1 or 99.x prior to 99.1 or 101.x prior to 101... |
| CVE-2018-1265 | — | — | 1.8% | Jun 6, 2018 | Cloud Foundry Diego, release versions prior to 2.8.0, does not properly sanitize file paths in tar and zip files headers... |
| CVE-2018-10198 | — | — | 1.0% | Jun 6, 2018 | An issue was discovered in OTRS 6.0.x before 6.0.7. An attacker who is logged into OTRS as a customer can use the ticket... |
| CVE-2018-1000203 | — | — | 1.0% | Jun 6, 2018 | Soar Labs Soar Coin version up to and including git commit 4a2aa71ee21014e2880a3f7aad11091ed6ad434f (latest release as o... |
| CVE-2018-1456 | — | — | 2.0% | Jun 6, 2018 | IBM Rhapsody DM 5.0 through 5.0.2 and 6.0 through 6.0.5 is vulnerable to a XML External Entity Injection (XXE) attack wh... |
| CVE-2018-11813 | — | — | 3.2% | Jun 6, 2018 | libjpeg 9c has a large loop because read_pixel in rdtarga.c mishandles EOF. |
| CVE-2018-11808 | — | — | 6.4% | Jun 6, 2018 | Incorrect Access Control in CustomFieldsFeedServlet in Zoho ManageEngine Applications Manager Version 13 before build 13... |
| CVE-2018-11553 | — | — | 0.7% | Jun 6, 2018 | SGIN.CN xiangyun platform V9.4.10 has XSS via the login_url parameter to /login.php. |
| CVE-2018-7884 | — | — | 0.9% | Jun 5, 2018 | An issue was discovered in DisplayLink Core Software Cleaner Application 8.2.1956. When the drivers are updated to a new... |
| CVE-2018-3691 | — | — | 0.3% | Jun 5, 2018 | Some implementations in Intel Integrated Performance Primitives Cryptography Library before version 2018 U3.1 do not pro... |
| CVE-2018-11586 | — | — | 15.2% | Jun 5, 2018 | XML external entity (XXE) vulnerability in api/rest/status in SearchBlox 8.6.7 allows remote unauthenticated users to re... |
| CVE-2018-10058 | — | — | 3.9% | Jun 5, 2018 | The remote management interface of cgminer 4.10.0 and bfgminer 5.5.0 allows an authenticated remote attacker to execute ... |
| CVE-2018-10057 | — | — | 2.4% | Jun 5, 2018 | The remote management interface of cgminer 4.10.0 and bfgminer 5.5.0 allows an authenticated remote attacker to write th... |
| CVE-2018-1000202 | — | — | 0.7% | Jun 5, 2018 | A persisted cross-site scripting vulnerability exists in Jenkins Groovy Postbuild Plugin 2.3.1 and older in various Jell... |
| CVE-2018-1000198 | — | — | 1.0% | Jun 5, 2018 | A XML external entity processing vulnerability exists in Jenkins Black Duck Hub Plugin 3.1.0 and older in PostBuildScanD... |
| CVE-2018-1000197 | — | — | 0.8% | Jun 5, 2018 | An improper authorization vulnerability exists in Jenkins Black Duck Hub Plugin 3.0.3 and older in PostBuildScanDescript... |
| CVE-2018-1000196 | — | — | 1.2% | Jun 5, 2018 | A exposure of sensitive information vulnerability exists in Jenkins Gitlab Hook Plugin 1.4.2 and older in gitlab_notifie... |
| CVE-2018-1000195 | MEDIUM | 4.3 | 2.1% | Jun 5, 2018 | A server-side request forgery vulnerability exists in Jenkins 2.120 and older, LTS 2.107.2 and older in ZipExtractionIns... |
| CVE-2018-1000194 | HIGH | 8.1 | 2.6% | Jun 5, 2018 | A path traversal vulnerability exists in Jenkins 2.120 and older, LTS 2.107.2 and older in FilePath.java, SoloFilePathFi... |
| CVE-2018-1000193 | MEDIUM | 4.3 | 1.0% | Jun 5, 2018 | A improper neutralization of control sequences vulnerability exists in Jenkins 2.120 and older, LTS 2.107.2 and older in... |
| CVE-2018-1000192 | MEDIUM | 4.3 | 1.1% | Jun 5, 2018 | A information exposure vulnerability exists in Jenkins 2.120 and older, LTS 2.107.2 and older in AboutJenkins.java, List... |
| CVE-2018-10601 | HIGH | 8.2 | 0.4% | Jun 5, 2018 | IntelliVue Patient Monitors MP Series (including MP2/X2/MP30/MP50/MP70/NP90/MX700/800) Rev B-M, IntelliVue Patient Monit... |
| CVE-2018-10599 | — | — | 0.4% | Jun 5, 2018 | IntelliVue Patient Monitors MP Series (including MP2/X2/MP30/MP50/MP70/NP90/MX700/800) Rev B-M, IntelliVue Patient Monit... |
| CVE-2018-10597 | HIGH | 8.3 | 0.4% | Jun 5, 2018 | IntelliVue Patient Monitors MP Series (including MP2/X2/MP30/MP50/MP70/NP90/MX700/800) Rev B-M, IntelliVue Patient Monit... |
| CVE-2018-1000191 | — | — | 1.0% | Jun 5, 2018 | A exposure of sensitive information vulnerability exists in Jenkins Black Duck Detect Plugin 1.4.0 and older in DetectPo... |
Check if your code is affected by 2018 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now