2018 CVE Vulnerabilities

17,817 CVEs published in 2018.

CVE IDSeverityCVSSDescription
CVE-2018-0324MEDIUM6.7A vulnerability in the CLI of Cisco Enterprise NFV Infrastructure Software (NFVIS) could allow an authenticated, high-pr...
CVE-2018-0323A vulnerability in the web management interface of Cisco Enterprise NFV Infrastructure Software (NFVIS) could allow an a...
CVE-2018-0297MEDIUM5.8A vulnerability in the detection engine of Cisco Firepower Threat Defense software could allow an unauthenticated, remot...
CVE-2018-0290A vulnerability in the TCP stack of Cisco SocialMiner could allow an unauthenticated, remote attacker to cause a denial ...
CVE-2018-0289A vulnerability in the logs component of Cisco Identity Services Engine could allow an unauthenticated, remote attacker ...
CVE-2018-0280A vulnerability in the Real-Time Transport Protocol (RTP) bitstream processing of the Cisco Meeting Server could allow a...
CVE-2018-0279HIGH8.8A vulnerability in the Secure Copy Protocol (SCP) server of Cisco Enterprise NFV Infrastructure Software (NFVIS) could a...
CVE-2018-0277A vulnerability in the Extensible Authentication Protocol-Transport Layer Security (EAP-TLS) certificate validation duri...
CVE-2018-0271A vulnerability in the API gateway of the Cisco Digital Network Architecture (DNA) Center could allow an unauthenticated...
CVE-2018-0270A vulnerability in the web-based management interface of Cisco IoT Field Network Director (IoT-FND) could allow an unaut...
CVE-2018-0268A vulnerability in the container management subsystem of Cisco Digital Network Architecture (DNA) Center could allow an ...
CVE-2018-0222A vulnerability in Cisco Digital Network Architecture (DNA) Center could allow an unauthenticated, remote attacker to lo...
CVE-2018-1172This vulnerability allows remote attackers to deny service on vulnerable installations of The Squid Software Foundation ...
CVE-2018-4850A vulnerability has been identified in SIMATIC S7-400 (incl. F) CPU hardware version 4.0 and below (All versions), SIMAT...
CVE-2018-11214An issue was discovered in libjpeg 9a. The get_text_rgb_row function in rdppm.c allows remote attackers to cause a denia...
CVE-2018-11213An issue was discovered in libjpeg 9a. The get_text_gray_row function in rdppm.c allows remote attackers to cause a deni...
CVE-2018-11212An issue was discovered in libjpeg 9a and 9d. The alloc_sarray function in jmemmgr.c allows remote attackers to cause a ...
CVE-2018-8014The defaults settings for the CORS filter provided in Apache Tomcat 9.0.0.M1 to 9.0.8, 8.5.0 to 8.5.31, 8.0.0.RC1 to 8.0...
CVE-2018-11210TinyXML2 6.2.0 has a heap-based buffer over-read in the XMLDocument::Parse function in libtinyxml2.so. NOTE: The tinyxml...
CVE-2018-11209An issue was discovered in Z-BlogPHP 2.0.0. zb_system/cmd.php?act=verify relies on MD5 for the password parameter, which...
CVE-2018-11208An issue was discovered in Z-BlogPHP 2.0.0. There is a persistent XSS that allows remote attackers to inject arbitrary w...
CVE-2018-11207A division by zero was discovered in H5D__chunk_init in H5Dchunk.c in the HDF HDF5 1.10.2 library. It could allow a remo...
CVE-2018-11206An out of bounds read was discovered in H5O_fill_new_decode and H5O_fill_old_decode in H5Ofill.c in the HDF HDF5 1.10.2 ...
CVE-2018-11205A out of bounds read was discovered in H5VM_memcpyvv in H5VM.c in the HDF HDF5 1.10.2 library. It could allow a remote d...
CVE-2018-11204A NULL pointer dereference was discovered in H5O__chunk_deserialize in H5Ocache.c in the HDF HDF5 1.10.2 library. It cou...

Check if your code is affected by 2018 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now