2018 CVE Vulnerabilities
17,817 CVEs published in 2018.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2018-0250 | — | — | 0.5% | May 2, 2018 | A vulnerability in Central Web Authentication (CWA) with FlexConnect Access Points (APs) for Cisco Aironet 1560, 1810, 1... |
| CVE-2018-0249 | MEDIUM | 4.3 | 0.6% | May 2, 2018 | A vulnerability when handling incoming 802.11 Association Requests for Cisco Aironet 1800 Series Access Point (APs) on Q... |
| CVE-2018-0247 | — | — | 0.9% | May 2, 2018 | A vulnerability in Web Authentication (WebAuth) clients for the Cisco Wireless LAN Controller (WLC) and Aironet Access P... |
| CVE-2018-0245 | MEDIUM | 5.3 | 2.4% | May 2, 2018 | A vulnerability in the REST API of Cisco 5500 and 8500 Series Wireless LAN Controller (WLC) Software could allow an unau... |
| CVE-2018-0235 | HIGH | 7.4 | 0.5% | May 2, 2018 | A vulnerability in the 802.11 frame validation functionality of the Cisco Wireless LAN Controller (WLC) could allow an u... |
| CVE-2018-0234 | — | — | 4.0% | May 2, 2018 | A vulnerability in the implementation of Point-to-Point Tunneling Protocol (PPTP) functionality in Cisco Aironet 1810, 1... |
| CVE-2018-0226 | — | — | 2.2% | May 2, 2018 | A vulnerability in the assignment and management of default user accounts for Secure Shell (SSH) access to Cisco Aironet... |
| CVE-2018-9919 | — | — | 4.8% | May 2, 2018 | A web-accessible backdoor, with resultant SSRF, exists in Tp-shop 2.0.5 through 2.0.8, which allows remote attackers to ... |
| CVE-2018-8900 | — | — | 1.0% | May 2, 2018 | The License Manager service of HASP SRM, Sentinel HASP and Sentinel LDK products prior to Sentinel LDK RTE 7.80 allows r... |
| CVE-2018-10578 | — | — | 1.3% | May 2, 2018 | An issue was discovered on WatchGuard AP100, AP102, and AP200 devices with firmware before 1.2.9.15, and AP300 devices w... |
| CVE-2018-10577 | — | — | 6.6% | May 2, 2018 | An issue was discovered on WatchGuard AP100, AP102, and AP200 devices with firmware before 1.2.9.15, and AP300 devices w... |
| CVE-2018-10568 | — | — | 0.7% | May 2, 2018 | XSS exists in Flexense DiskSorter Enterprise from v9.5.12 to v10.7. |
| CVE-2018-10567 | — | — | 0.7% | May 2, 2018 | XSS exists in Flexense VX Search Enterprise from v10.1.12 to v10.7. |
| CVE-2018-10566 | — | — | 0.7% | May 2, 2018 | XSS exists in Flexense DupScout Enterprise from v10.0.18 to v10.7. |
| CVE-2018-10565 | — | — | 0.7% | May 2, 2018 | XSS exists in Flexense DiskSavvy Enterprise from v10.4 to v10.7. |
| CVE-2018-10564 | — | — | 0.7% | May 2, 2018 | XSS exists in Flexense DiskPulse Enterprise from v10.4 to v10.7. |
| CVE-2018-10563 | — | — | 0.7% | May 2, 2018 | An XSS in Flexense SyncBreeze affects all versions (tested from SyncBreeze Enterprise from v10.1 to v10.7). |
| CVE-2018-10294 | — | — | 0.7% | May 2, 2018 | Flexense DiskBoss Enterprise v7.4.28 to v9.1.16 has XSS. |
| CVE-2018-10115 | — | — | 4.7% | May 2, 2018 | Incorrect initialization logic of RAR decoder objects in 7-Zip 18.03 and before can lead to usage of uninitialized memor... |
| CVE-2018-8115 | — | — | 32.5% | May 2, 2018 | A remote code execution vulnerability exists when the Windows Host Compute Service Shim (hcsshim) library fails to prope... |
| CVE-2018-1104 | — | — | 2.5% | May 2, 2018 | Ansible Tower through version 3.2.3 has a vulnerability that allows users only with access to define variables for a job... |
| CVE-2018-10680 | — | — | 0.9% | May 2, 2018 | Z-BlogPHP 1.5.2 has a stored Cross Site Scripting Vulnerability exploitable by an administrator who navigates to "Web si... |
| CVE-2018-10677 | — | — | 2.0% | May 2, 2018 | The DecodeGifImg function in ngiflib.c in MiniUPnP ngiflib 0.4 lacks certain checks against width and height, which allo... |
| CVE-2018-1101 | — | — | 2.0% | May 2, 2018 | Ansible Tower before version 3.2.4 has a flaw in the management of system and organization administrators that allows fo... |
| CVE-2018-10676 | — | — | 2.1% | May 2, 2018 | CeNova, Night OWL, Novo, Pulnix, QSee, Securus, and TBK Vision DVR devices allow remote attackers to download a file and... |
Check if your code is affected by 2018 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now