2018 CVE Vulnerabilities

17,817 CVEs published in 2018.

CVE IDSeverityCVSSDescription
CVE-2018-0240HIGH8.6Multiple vulnerabilities in the Application Layer Protocol Inspection feature of Cisco Adaptive Security Appliance (ASA)...
CVE-2018-0239HIGH7.5A vulnerability in the egress packet processing functionality of the Cisco StarOS operating system for Cisco Aggregation...
CVE-2018-0238A vulnerability in the role-based resource checking functionality of the Cisco Unified Computing System (UCS) Director c...
CVE-2018-0237MEDIUM5.8A vulnerability in the file type detection mechanism of the Cisco Advanced Malware Protection (AMP) for Endpoints macOS ...
CVE-2018-0233A vulnerability in the Secure Sockets Layer (SSL) packet reassembly functionality of the detection engine in Cisco Firep...
CVE-2018-0231HIGH8.6A vulnerability in the Transport Layer Security (TLS) library of Cisco Adaptive Security Appliance (ASA) Software and Ci...
CVE-2018-0230HIGH8.6A vulnerability in the internal packet-processing functionality of Cisco Firepower Threat Defense (FTD) Software for Cis...
CVE-2018-0229A vulnerability in the implementation of Security Assertion Markup Language (SAML) Single Sign-On (SSO) authentication f...
CVE-2018-0228HIGH8.6A vulnerability in the ingress flow creation functionality of Cisco Adaptive Security Appliance (ASA) could allow an una...
CVE-2018-0227HIGH7.5A vulnerability in the Secure Sockets Layer (SSL) Virtual Private Network (VPN) Client Certificate Authentication featur...
CVE-2018-0112A vulnerability in Cisco WebEx Business Suite clients, Cisco WebEx Meetings, and Cisco WebEx Meetings Server could allow...
CVE-2018-3843HIGH8.8An exploitable type confusion vulnerability exists in the way Foxit PDF Reader version 9.0.1.1049 parses files with asso...
CVE-2018-3842HIGH8.8An exploitable use of an uninitialized pointer vulnerability exists in the JavaScript engine in Foxit PDF Reader version...
CVE-2018-10236POSCMS 3.2.18 allows remote attackers to execute arbitrary PHP code via the diy\dayrui\controllers\admin\Syscontroller.p...
CVE-2018-10235POSCMS 3.2.10 allows remote attackers to execute arbitrary PHP code via the diy\module\member\controllers\admin\Setting....
CVE-2018-9861Cross-site scripting (XSS) vulnerability in the Enhanced Image (aka image2) plugin for CKEditor (in versions 4.5.10 thro...
CVE-2018-8118A remote code execution vulnerability exists when Internet Explorer improperly accesses objects in memory, aka "Internet...
CVE-2018-10230Zend Debugger in Zend Server before 9.1.3 has XSS, aka ZSR-2455.
CVE-2018-7920Huawei AR1200 V200R006C10SPC300, AR160 V200R006C10SPC300, AR200 V200R006C10SPC300, AR2200 V200R006C10SPC300, AR3200 V200...
CVE-2018-7899The Mali Driver of Huawei Berkeley-AL20 and Berkeley-BD smart phones with software Berkeley-AL20 8.0.0.105(C00), 8.0.0.1...
CVE-2018-10188phpMyAdmin 4.8.0 before 4.8.0-1 has CSRF, allowing an attacker to execute arbitrary SQL statements, related to js/db_ope...
CVE-2018-6306Unauthorized code execution from specific DLL and is known as DLL Hijacking attack in Kaspersky Password Manager version...
CVE-2018-1146A remote unauthenticated user can enable telnet on the Belkin N750 using firmware version 1.10.22 by sending a crafted H...
CVE-2018-1145A remote unauthenticated user can overflow a stack buffer in the Belkin N750 using firmware version 1.10.22 by sending a...
CVE-2018-1144A remote unauthenticated user can execute commands as root in the Belkin N750 using firmware version 1.10.22 by sending ...

Check if your code is affected by 2018 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now