2018 CVE Vulnerabilities

17,817 CVEs published in 2018.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2018-11967——Signature verification of the skel library could potentially be disabled as the memory region on the remote subsystem in...
CVE-2018-11953——While processing ssid IE length from remote AP, possible out-of-bounds access may occur due to crafted ssid IE length in...
CVE-2018-11949——Failure to initialize the extra buffer can lead to an out of buffer access in WLAN function in Snapdragon Auto, Snapdrag...
CVE-2018-11940——Lack of check in length before using memcpy in WLAN function can lead to OOB access in Snapdragon Auto, Snapdragon Compu...
CVE-2018-11937——Lack of input validation before copying can lead to a buffer over read in WLAN function in Snapdragon Auto, Snapdragon C...
CVE-2018-11936——Index of array is processed in a wrong way inside a while loop and result in invalid index (-1 or something else) leads ...
CVE-2018-11930——Improper input validation on input data which is used to locate and copy the additional IEs in WLAN function can lead to...
CVE-2018-11928——Lack of check on length parameter may cause buffer overflow while processing WMI commands in Snapdragon Auto, Snapdragon...
CVE-2018-11927——Improper input validation on input which is used as an array index will lead to an out of bounds issue while processing ...
CVE-2018-11925——Data length received from firmware is not validated against the max allowed size which can result in buffer overflow. in...
CVE-2018-11924——Improper buffer length validation in WLAN function can lead to a potential integer oveflow issue in Snapdragon Auto, Sna...
CVE-2018-11923——Improper buffer length check before copying can lead to integer overflow and then a buffer overflow in WMA event handler...
CVE-2018-11271——Improper authentication can happen on Remote command handling due to inappropriate handling of events in Snapdragon Auto...
CVE-2018-10815——An issue was discovered in Cloudera Manager before 5.13.4, 5.14.x before 5.14.4, and 5.15.x before 5.15.1. A read-only u...
CVE-2018-19614——XSS exists in the /cmdexec/cmdexe?cmd= function in Westermo DR-250 Pre-5162 and DR-260 Pre-5162 routers.
CVE-2018-15664——In Docker through 18.06.1-ce-rc2, the API endpoints behind the 'docker cp' command are vulnerable to a symlink-exchange ...
CVE-2018-7803——A CWE-754 Improper Check for Unusual or Exceptional Conditions vulnerability exists in Triconex TriStation Emulator V1.2...
CVE-2018-7201——CSV Injection was discovered in ProjectSend before r1053, affecting victims who import the data into Microsoft Excel.
CVE-2018-7840——A Uncontrolled Search Path Element (CWE-427) vulnerability exists in VideoXpert OpsCenter versions prior to 3.1 which co...
CVE-2018-7834——A CWE-79 Cross-Site Scripting vulnerability exists in all versions of the TSXETG100 allowing an attacker to send a speci...
CVE-2018-7829——An Improper Neutralization of Special Elements in Query vulnerability exists in the 1st Gen. Pelco Sarix Enhanced Camera...
CVE-2018-7828——A Cross-Site Request Forgery (CSRF) vulnerability exists in the 1st Gen. Pelco Sarix Enhanced Camera and Spectra Enhance...
CVE-2018-7827——A Cross-Site Scripting (XSS) vulnerability exists in the 1st Gen. Pelco Sarix Enhanced Camera and Spectra Enhanced PTZ C...
CVE-2018-7826——A Command Injection vulnerability exists in the web-based GUI of the 1st Gen Pelco Sarix Enhanced Camera that could allo...
CVE-2018-7825——A Command Injection vulnerability exists in the web-based GUI of the 1st Gen PelcoSarix Enhanced Camera that could allow...

Check if your code is affected by 2018 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now