2018 CVE Vulnerabilities
17,817 CVEs published in 2018.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2018-10718 | — | — | 31.6% | May 3, 2018 | Stack-based buffer overflow in Activision Infinity Ward Call of Duty Modern Warfare 2 before 2018-04-26 allows remote at... |
| CVE-2018-10168 | — | — | 1.6% | May 3, 2018 | TP-Link EAP Controller and Omada Controller versions 2.5.4_Windows/2.6.0_Windows do not control privileges for usage of ... |
| CVE-2018-10167 | — | — | 1.2% | May 3, 2018 | The web application backup file in the TP-Link EAP Controller and Omada Controller versions 2.5.4_Windows/2.6.0_Windows ... |
| CVE-2018-10166 | — | — | 0.7% | May 3, 2018 | The web management interface in the TP-Link EAP Controller and Omada Controller versions 2.5.4_Windows/2.6.0_Windows doe... |
| CVE-2018-10165 | — | — | 0.6% | May 3, 2018 | Stored Cross-site scripting (XSS) vulnerability in the TP-Link EAP Controller and Omada Controller versions 2.5.4_Window... |
| CVE-2018-10164 | — | — | 0.6% | May 3, 2018 | Stored Cross-site scripting (XSS) vulnerability in the TP-Link EAP Controller and Omada Controller versions 2.5.4_Window... |
| CVE-2018-10717 | — | — | 2.0% | May 3, 2018 | The DecodeGifImg function in ngiflib.c in MiniUPnP ngiflib 0.4 does not consider the bounds of the pixels data structure... |
| CVE-2018-10716 | — | — | 0.4% | May 3, 2018 | An issue was discovered in Shanghai 2345 Security Guard 3.7.0. 2345MPCSafe.exe, 2345SafeTray.exe, and 2345Speedup.exe al... |
| CVE-2018-10713 | — | — | 2.4% | May 3, 2018 | An issue was discovered on D-Link DSL-3782 EU 1.01 devices. An authenticated user can pass a long buffer as a 'read' par... |
| CVE-2018-4849 | — | — | 0.8% | May 3, 2018 | A vulnerability has been identified in Siveillance VMS Video for Android (All versions < V12.1a (2018 R1)), Siveillance ... |
| CVE-2018-10689 | — | — | 2.0% | May 3, 2018 | blktrace (aka Block IO Tracing) 1.2.0, as used with the Linux kernel and Android, has a buffer overflow in the dev_map_r... |
| CVE-2018-10666 | — | — | 1.0% | May 3, 2018 | The Owned smart contract implementation for Aurora IDEX Membership (IDXM), an Ethereum ERC20 token, allows attackers to ... |
| CVE-2018-10685 | — | — | 2.5% | May 2, 2018 | In Long Range Zip (aka lrzip) 0.631, there is a use-after-free in the lzma_decompress_buf function of stream.c, which al... |
| CVE-2018-0288 | MEDIUM | 5.3 | 2.7% | May 2, 2018 | A vulnerability in Cisco WebEx Recording Format (WRF) Player could allow an unauthenticated, remote attacker to access s... |
| CVE-2018-0287 | — | — | 3.9% | May 2, 2018 | A vulnerability in the Cisco WebEx Network Recording Player for Advanced Recording Format (ARF) files could allow an una... |
| CVE-2018-0286 | MEDIUM | 5.3 | 3.3% | May 2, 2018 | A vulnerability in the netconf interface of Cisco IOS XR Software could allow an unauthenticated, remote attacker to cau... |
| CVE-2018-0285 | — | — | 2.8% | May 2, 2018 | A vulnerability in service logging for Cisco Prime Service Catalog could allow an authenticated, remote attacker to deny... |
| CVE-2018-0283 | — | — | 1.5% | May 2, 2018 | A vulnerability in the detection engine of Cisco Firepower System Software could allow an unauthenticated, remote attack... |
| CVE-2018-0281 | — | — | 1.5% | May 2, 2018 | A vulnerability in the detection engine of Cisco Firepower System Software could allow an unauthenticated, remote attack... |
| CVE-2018-0278 | MEDIUM | 6.5 | 2.2% | May 2, 2018 | A vulnerability in the management console of Cisco Firepower System Software could allow an unauthenticated, remote atta... |
| CVE-2018-0264 | — | — | 3.2% | May 2, 2018 | A vulnerability in the Cisco WebEx Network Recording Player for Advanced Recording Format (ARF) files could allow an una... |
| CVE-2018-0262 | — | — | 4.2% | May 2, 2018 | A vulnerability in Cisco Meeting Server could allow an unauthenticated, remote attacker to gain unauthorized access to c... |
| CVE-2018-0258 | — | — | 49.9% | May 2, 2018 | A vulnerability in the Cisco Prime File Upload servlet affecting multiple Cisco products could allow a remote attacker t... |
| CVE-2018-0253 | — | — | 7.1% | May 2, 2018 | A vulnerability in the ACS Report component of Cisco Secure Access Control System (ACS) could allow an unauthenticated, ... |
| CVE-2018-0252 | — | — | 2.5% | May 2, 2018 | A vulnerability in the IP Version 4 (IPv4) fragment reassembly function of Cisco 3500, 5500, and 8500 Series Wireless LA... |
Check if your code is affected by 2018 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now