2018 CVE Vulnerabilities
17,817 CVEs published in 2018.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2018-11967 | — | — | 0.2% | May 24, 2019 | Signature verification of the skel library could potentially be disabled as the memory region on the remote subsystem in... |
| CVE-2018-11953 | — | — | 0.9% | May 24, 2019 | While processing ssid IE length from remote AP, possible out-of-bounds access may occur due to crafted ssid IE length in... |
| CVE-2018-11949 | — | — | 0.9% | May 24, 2019 | Failure to initialize the extra buffer can lead to an out of buffer access in WLAN function in Snapdragon Auto, Snapdrag... |
| CVE-2018-11940 | — | — | 0.9% | May 24, 2019 | Lack of check in length before using memcpy in WLAN function can lead to OOB access in Snapdragon Auto, Snapdragon Compu... |
| CVE-2018-11937 | — | — | 0.9% | May 24, 2019 | Lack of input validation before copying can lead to a buffer over read in WLAN function in Snapdragon Auto, Snapdragon C... |
| CVE-2018-11936 | — | — | 0.9% | May 24, 2019 | Index of array is processed in a wrong way inside a while loop and result in invalid index (-1 or something else) leads ... |
| CVE-2018-11930 | — | — | 0.9% | May 24, 2019 | Improper input validation on input data which is used to locate and copy the additional IEs in WLAN function can lead to... |
| CVE-2018-11928 | — | — | 0.2% | May 24, 2019 | Lack of check on length parameter may cause buffer overflow while processing WMI commands in Snapdragon Auto, Snapdragon... |
| CVE-2018-11927 | — | — | 0.2% | May 24, 2019 | Improper input validation on input which is used as an array index will lead to an out of bounds issue while processing ... |
| CVE-2018-11925 | — | — | 0.2% | May 24, 2019 | Data length received from firmware is not validated against the max allowed size which can result in buffer overflow. in... |
| CVE-2018-11924 | — | — | 0.2% | May 24, 2019 | Improper buffer length validation in WLAN function can lead to a potential integer oveflow issue in Snapdragon Auto, Sna... |
| CVE-2018-11923 | — | — | 0.2% | May 24, 2019 | Improper buffer length check before copying can lead to integer overflow and then a buffer overflow in WMA event handler... |
| CVE-2018-11271 | — | — | 0.8% | May 24, 2019 | Improper authentication can happen on Remote command handling due to inappropriate handling of events in Snapdragon Auto... |
| CVE-2018-10815 | — | — | 0.9% | May 24, 2019 | An issue was discovered in Cloudera Manager before 5.13.4, 5.14.x before 5.14.4, and 5.15.x before 5.15.1. A read-only u... |
| CVE-2018-19614 | — | — | 0.9% | May 23, 2019 | XSS exists in the /cmdexec/cmdexe?cmd= function in Westermo DR-250 Pre-5162 and DR-260 Pre-5162 routers. |
| CVE-2018-15664 | — | — | 3.4% | May 23, 2019 | In Docker through 18.06.1-ce-rc2, the API endpoints behind the 'docker cp' command are vulnerable to a symlink-exchange ... |
| CVE-2018-7803 | — | — | 1.1% | May 22, 2019 | A CWE-754 Improper Check for Unusual or Exceptional Conditions vulnerability exists in Triconex TriStation Emulator V1.2... |
| CVE-2018-7201 | — | — | 1.3% | May 22, 2019 | CSV Injection was discovered in ProjectSend before r1053, affecting victims who import the data into Microsoft Excel. |
| CVE-2018-7840 | — | — | 0.9% | May 22, 2019 | A Uncontrolled Search Path Element (CWE-427) vulnerability exists in VideoXpert OpsCenter versions prior to 3.1 which co... |
| CVE-2018-7834 | — | — | 0.8% | May 22, 2019 | A CWE-79 Cross-Site Scripting vulnerability exists in all versions of the TSXETG100 allowing an attacker to send a speci... |
| CVE-2018-7829 | — | — | 1.7% | May 22, 2019 | An Improper Neutralization of Special Elements in Query vulnerability exists in the 1st Gen. Pelco Sarix Enhanced Camera... |
| CVE-2018-7828 | — | — | 0.6% | May 22, 2019 | A Cross-Site Request Forgery (CSRF) vulnerability exists in the 1st Gen. Pelco Sarix Enhanced Camera and Spectra Enhance... |
| CVE-2018-7827 | — | — | 0.8% | May 22, 2019 | A Cross-Site Scripting (XSS) vulnerability exists in the 1st Gen. Pelco Sarix Enhanced Camera and Spectra Enhanced PTZ C... |
| CVE-2018-7826 | — | — | 2.2% | May 22, 2019 | A Command Injection vulnerability exists in the web-based GUI of the 1st Gen Pelco Sarix Enhanced Camera that could allo... |
| CVE-2018-7825 | — | — | 2.2% | May 22, 2019 | A Command Injection vulnerability exists in the web-based GUI of the 1st Gen PelcoSarix Enhanced Camera that could allow... |
Check if your code is affected by 2018 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now