2018 CVE Vulnerabilities
17,817 CVEs published in 2018.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2018-5361 | — | — | 1.0% | Jan 12, 2018 | The WPGlobus plugin 1.9.6 for WordPress has CSRF via wp-admin/options.php. |
| CVE-2018-5358 | — | — | 1.7% | Jan 12, 2018 | ImageMagick 7.0.7-22 Q16 has memory leaks in the EncodeImageAttributes function in coders/json.c, as demonstrated by the... |
| CVE-2018-5357 | — | — | 3.7% | Jan 12, 2018 | ImageMagick 7.0.7-22 Q16 has memory leaks in the ReadDCMImage function in coders/dcm.c. |
| CVE-2018-5344 | — | — | 0.4% | Jan 12, 2018 | In the Linux kernel through 4.14.13, drivers/block/loop.c mishandles lo_release serialization, which allows attackers to... |
| CVE-2018-5327 | — | — | 1.2% | Jan 12, 2018 | Cheetah Mobile Armorfly Browser & Downloader 1.1.05.0010, when installed on unspecified "older" Android platforms, allow... |
| CVE-2018-5326 | — | — | 1.2% | Jan 12, 2018 | Cheetah Mobile CM Browser 5.22.06.0012, when installed on unspecified "older" Android platforms, allows Same Origin Poli... |
| CVE-2018-5347 | — | — | 54.2% | Jan 12, 2018 | Seagate Media Server in Seagate Personal Cloud has unauthenticated command injection in the uploadTelemetry and getLogs ... |
| CVE-2018-5345 | — | — | 2.2% | Jan 12, 2018 | A stack-based buffer overflow within GNOME gcab through 0.7.4 can be exploited by malicious attackers to cause a crash o... |
| CVE-2018-5336 | — | — | 2.7% | Jan 11, 2018 | In Wireshark 2.4.0 to 2.4.3 and 2.2.0 to 2.2.11, the JSON, XML, NTP, XMPP, and GDB dissectors could crash. This was addr... |
| CVE-2018-5335 | — | — | 1.9% | Jan 11, 2018 | In Wireshark 2.4.0 to 2.4.3 and 2.2.0 to 2.2.11, the WCP dissector could crash. This was addressed in epan/dissectors/pa... |
| CVE-2018-5334 | — | — | 1.9% | Jan 11, 2018 | In Wireshark 2.4.0 to 2.4.3 and 2.2.0 to 2.2.11, the IxVeriWave file parser could crash. This was addressed in wiretap/v... |
| CVE-2018-1361 | — | — | 1.1% | Jan 11, 2018 | IBM WebSphere Portal 8.5 and 9.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitra... |
| CVE-2018-5189 | — | — | 1.2% | Jan 11, 2018 | Race condition in Jungo Windriver 12.5.1 allows local users to cause a denial of service (buffer overflow) or gain syste... |
| CVE-2018-0118 | — | — | 1.7% | Jan 11, 2018 | A vulnerability in the web-based management interface of Cisco Unified Communications Manager could allow an unauthentic... |
| CVE-2018-5333 | — | — | 7.7% | Jan 11, 2018 | In the Linux kernel through 4.14.13, the rds_cmsg_atomic function in net/rds/rdma.c mishandles cases where page pinning ... |
| CVE-2018-0010 | — | — | 0.6% | Jan 10, 2018 | A vulnerability in the Juniper Networks Junos Space Security Director allows a user who does not have SSH access to a de... |
| CVE-2018-0007 | — | — | 2.2% | Jan 10, 2018 | An unauthenticated network-based attacker able to send a maliciously crafted LLDP packet to the local segment, through a... |
| CVE-2018-5331 | — | — | 0.6% | Jan 10, 2018 | Discuz! DiscuzX X3.4 has XSS via the view parameter to include/space/space_poll.php, as demonstrated by a mod=space do=p... |
| CVE-2018-0819 | — | — | 5.7% | Jan 10, 2018 | Microsoft Office 2016 for Mac allows an attacker to send a specially crafted email attachment to a user in an attempt to... |
| CVE-2018-0818 | — | — | 3.7% | Jan 10, 2018 | Microsoft ChakraCore allows an attacker to bypass Control Flow Guard (CFG) in conjunction with another vulnerability to ... |
| CVE-2018-0812 | — | — | 23.9% | Jan 10, 2018 | Equation Editor in Microsoft Office 2003, Microsoft Office 2007, Microsoft Office 2010, Microsoft Office 2013, and Micro... |
| CVE-2018-0807 | — | — | 24.4% | Jan 10, 2018 | Equation Editor in Microsoft Office 2003, Microsoft Office 2007, Microsoft Office 2010, Microsoft Office 2013, and Micro... |
| CVE-2018-0806 | — | — | 24.6% | Jan 10, 2018 | Equation Editor in Microsoft Office 2003, Microsoft Office 2007, Microsoft Office 2010, Microsoft Office 2013, and Micro... |
| CVE-2018-0805 | — | — | 24.4% | Jan 10, 2018 | Equation Editor in Microsoft Office 2003, Microsoft Office 2007, Microsoft Office 2010, Microsoft Office 2013, and Micro... |
| CVE-2018-0804 | — | — | 24.4% | Jan 10, 2018 | Equation Editor in Microsoft Office 2003, Microsoft Office 2007, Microsoft Office 2010, Microsoft Office 2013, and Micro... |
Check if your code is affected by 2018 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now