2018 CVE Vulnerabilities

17,817 CVEs published in 2018.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2018-11967Signature verification of the skel library could potentially be disabled as the memory region on the remote subsystem in...
CVE-2018-11953While processing ssid IE length from remote AP, possible out-of-bounds access may occur due to crafted ssid IE length in...
CVE-2018-11949Failure to initialize the extra buffer can lead to an out of buffer access in WLAN function in Snapdragon Auto, Snapdrag...
CVE-2018-11940Lack of check in length before using memcpy in WLAN function can lead to OOB access in Snapdragon Auto, Snapdragon Compu...
CVE-2018-11937Lack of input validation before copying can lead to a buffer over read in WLAN function in Snapdragon Auto, Snapdragon C...
CVE-2018-11936Index of array is processed in a wrong way inside a while loop and result in invalid index (-1 or something else) leads ...
CVE-2018-11930Improper input validation on input data which is used to locate and copy the additional IEs in WLAN function can lead to...
CVE-2018-11928Lack of check on length parameter may cause buffer overflow while processing WMI commands in Snapdragon Auto, Snapdragon...
CVE-2018-11927Improper input validation on input which is used as an array index will lead to an out of bounds issue while processing ...
CVE-2018-11925Data length received from firmware is not validated against the max allowed size which can result in buffer overflow. in...
CVE-2018-11924Improper buffer length validation in WLAN function can lead to a potential integer oveflow issue in Snapdragon Auto, Sna...
CVE-2018-11923Improper buffer length check before copying can lead to integer overflow and then a buffer overflow in WMA event handler...
CVE-2018-11271Improper authentication can happen on Remote command handling due to inappropriate handling of events in Snapdragon Auto...
CVE-2018-10815An issue was discovered in Cloudera Manager before 5.13.4, 5.14.x before 5.14.4, and 5.15.x before 5.15.1. A read-only u...
CVE-2018-19614XSS exists in the /cmdexec/cmdexe?cmd= function in Westermo DR-250 Pre-5162 and DR-260 Pre-5162 routers.
CVE-2018-15664In Docker through 18.06.1-ce-rc2, the API endpoints behind the 'docker cp' command are vulnerable to a symlink-exchange ...
CVE-2018-7803A CWE-754 Improper Check for Unusual or Exceptional Conditions vulnerability exists in Triconex TriStation Emulator V1.2...
CVE-2018-7201CSV Injection was discovered in ProjectSend before r1053, affecting victims who import the data into Microsoft Excel.
CVE-2018-7840A Uncontrolled Search Path Element (CWE-427) vulnerability exists in VideoXpert OpsCenter versions prior to 3.1 which co...
CVE-2018-7834A CWE-79 Cross-Site Scripting vulnerability exists in all versions of the TSXETG100 allowing an attacker to send a speci...
CVE-2018-7829An Improper Neutralization of Special Elements in Query vulnerability exists in the 1st Gen. Pelco Sarix Enhanced Camera...
CVE-2018-7828A Cross-Site Request Forgery (CSRF) vulnerability exists in the 1st Gen. Pelco Sarix Enhanced Camera and Spectra Enhance...
CVE-2018-7827A Cross-Site Scripting (XSS) vulnerability exists in the 1st Gen. Pelco Sarix Enhanced Camera and Spectra Enhanced PTZ C...
CVE-2018-7826A Command Injection vulnerability exists in the web-based GUI of the 1st Gen Pelco Sarix Enhanced Camera that could allo...
CVE-2018-7825A Command Injection vulnerability exists in the web-based GUI of the 1st Gen PelcoSarix Enhanced Camera that could allow...

Check if your code is affected by 2018 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now