2018 CVE Vulnerabilities
17,817 CVEs published in 2018.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2018-10597 | HIGH | 8.3 | 0.4% | Jun 5, 2018 | IntelliVue Patient Monitors MP Series (including MP2/X2/MP30/MP50/MP70/NP90/MX700/800) Rev B-M, IntelliVue Patient Monit... |
| CVE-2018-6662 | HIGH | 7.8 | 0.2% | Jun 5, 2018 | Privilege Escalation vulnerability in McAfee Management of Native Encryption (MNE) before 4.1.4 allows local users to ga... |
| CVE-2018-3853 | HIGH | 8.8 | 3.4% | Jun 4, 2018 | An exploitable use-after-free vulnerability exists in the JavaScript engine of Foxit Software Foxit PDF Reader version 9... |
| CVE-2018-1600 | HIGH | 8.6 | 1.1% | Jun 4, 2018 | IBM BigFix Platform 9.2 and 9.5 transmits sensitive or security-critical data in clear text in a communication channel t... |
| CVE-2018-11135 | HIGH | 8.8 | 2.1% | May 31, 2018 | The script '/adminui/error_details.php' in the Quest KACE System Management Appliance 8.0.318 allows authenticated users... |
| CVE-2018-3734 | HIGH | 7.5 | 1.9% | May 29, 2018 | stattic node module suffers from a Path Traversal vulnerability due to lack of validation of path, which allows a malici... |
| CVE-2018-3733 | HIGH | 7.5 | 2.2% | May 29, 2018 | crud-file-server node module before 0.9.0 suffers from a Path Traversal vulnerability due to incorrect validation of url... |
| CVE-2018-11516 | HIGH | 8.8 | 3.6% | May 28, 2018 | The vlc_demux_chained_Delete function in input/demux_chained.c in VideoLAN VLC media player 3.0.1 allows remote attacker... |
| CVE-2018-11506 | HIGH | 7.8 | 0.4% | May 28, 2018 | The sr_do_ioctl function in drivers/scsi/sr_ioctl.c in the Linux kernel through 4.16.12 allows local users to cause a de... |
| CVE-2018-11490 | HIGH | 8.8 | 2.5% | May 26, 2018 | The DGifDecompressLine function in dgif_lib.c in GIFLIB (possibly version 3.0.x), as later shipped in cgif.c in sam2p 0.... |
| CVE-2018-11489 | HIGH | 8.8 | 2.6% | May 26, 2018 | The DGifDecompressLine function in dgif_lib.c in GIFLIB (possibly version 3.0.x), as later shipped in cgif.c in sam2p 0.... |
| CVE-2018-1565 | HIGH | 8.4 | 0.4% | May 25, 2018 | IBM DB2 for Linux, UNIX and Windows (includes DB2 Connect Server) 9.7, 10.1, 10.5, and 11.1 could allow a local user to ... |
| CVE-2018-1544 | HIGH | 8.4 | 0.4% | May 25, 2018 | IBM DB2 for Linux, UNIX and Windows (includes DB2 Connect Server) 9.7, 10.1, 10.5, and 11.1 could allow a local user to ... |
| CVE-2018-1515 | HIGH | 7.4 | 0.4% | May 25, 2018 | IBM DB2 for Linux, UNIX and Windows (includes DB2 Connect Server) 10.5 and 11.1, under specific or unusual conditions, c... |
| CVE-2018-1488 | HIGH | 8.4 | 0.5% | May 25, 2018 | IBM DB2 for Linux, UNIX and Windows (includes DB2 Connect Server) 10.5 and 11.1 is vulnerable to a buffer overflow, whic... |
| CVE-2018-1125 | HIGH | 7.5 | 2.2% | May 23, 2018 | procps-ng before version 3.3.15 is vulnerable to a stack buffer overflow in pgrep. This vulnerability is mitigated by FO... |
| CVE-2018-1122 | HIGH | 7.3 | 1.3% | May 23, 2018 | procps-ng before version 3.3.15 is vulnerable to a local privilege escalation in top. If a user runs top with HOME unset... |
| CVE-2018-1124 | HIGH | 7.8 | 1.8% | May 23, 2018 | procps-ng before version 3.3.15 is vulnerable to multiple integer overflows leading to a heap corruption in file2strvec ... |
| CVE-2018-6493 | HIGH | 8.8 | 2.0% | May 22, 2018 | SQL Injection in HP Network Operations Management Ultimate, version 2017.07, 2017.11, 2018.02 and in Network Automation,... |
| CVE-2018-11329 | HIGH | 7.5 | 0.9% | May 22, 2018 | The DrugDealer function of a smart contract implementation for Ether Cartel, an Ethereum game, allows attackers to take ... |
| CVE-2018-7687 | HIGH | 7.8 | 0.4% | May 21, 2018 | The Micro Focus Client for OES before version 2 SP4 IR8a has a vulnerability that could allow a local attacker to elevat... |
| CVE-2018-8012 | HIGH | 7.5 | 8.7% | May 21, 2018 | No authentication/authorization is enforced when a server attempts to join a quorum in Apache ZooKeeper before 3.4.10, a... |
| CVE-2018-4942 | HIGH | 7.5 | 4.1% | May 19, 2018 | Adobe ColdFusion Update 5 and earlier versions, ColdFusion 11 Update 13 and earlier versions have an exploitable Unsafe ... |
| CVE-2018-4938 | HIGH | 7.8 | 0.7% | May 19, 2018 | Adobe ColdFusion Update 5 and earlier versions, ColdFusion 11 Update 13 and earlier versions have an exploitable Insecur... |
| CVE-2018-4937 | HIGH | 8.8 | 26.5% | May 19, 2018 | Adobe Flash Player versions 29.0.0.113 and earlier have an exploitable out-of-bounds write vulnerability. Successful exp... |
Check if your code is affected by 2018 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now