2018 CVE Vulnerabilities
17,817 CVEs published in 2018.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2018-21050 | CRITICAL | 9.8 | 0.9% | Apr 8, 2020 | An issue was discovered on Samsung mobile devices with N(7.x) and O(8.X) (Exynos chipsets) software. There is a Buffer o... |
| CVE-2018-21049 | CRITICAL | 9.8 | 0.6% | Apr 8, 2020 | An issue was discovered on Samsung mobile devices with N(7.x) and O(8.X) (Exynos chipsets) software. There is an arbitra... |
| CVE-2018-21044 | CRITICAL | 9.8 | 0.7% | Apr 8, 2020 | An issue was discovered on Samsung mobile devices with N(7.x) and O(8.0) software. The sem Trustlet has a buffer overflo... |
| CVE-2018-21042 | CRITICAL | 9.8 | 0.6% | Apr 8, 2020 | An issue was discovered on Samsung mobile devices with N(7.x), O(8.x), and P(9.0) software. Dual Messenger allows instal... |
| CVE-2018-21038 | CRITICAL | 9.8 | 0.5% | Apr 8, 2020 | An issue was discovered on Samsung mobile devices with N(7.x) software. The Secure Folder app's startup logic allows aut... |
| CVE-2018-21087 | CRITICAL | 9.8 | 0.4% | Apr 8, 2020 | An issue was discovered on Samsung mobile devices with L(5.x), M(6.x), and N(7.x) software. There is a vnswap heap-based... |
| CVE-2018-21081 | CRITICAL | 9.1 | 0.4% | Apr 8, 2020 | An issue was discovered on Samsung mobile devices with N(7.x) software. In Dual Messenger, the second app can use the ru... |
| CVE-2018-21090 | CRITICAL | 9.8 | 0.6% | Apr 8, 2020 | An issue was discovered on Samsung mobile devices with software through 2017-11-03 (S.LSI modem chipsets). The Exynos mo... |
| CVE-2018-21089 | CRITICAL | 9.8 | 0.8% | Apr 8, 2020 | An issue was discovered on Samsung mobile devices with N(7.x) (MT6755/MT6757 Mediatek models) software. Bootloader has a... |
| CVE-2018-11106 | CRITICAL | 9.8 | 2.6% | Apr 1, 2020 | NETGEAR has released fixes for a pre-authentication command injection in request_handler.php security vulnerability on t... |
| CVE-2018-20334 | CRITICAL | 9.8 | 3.8% | Mar 20, 2020 | An issue was discovered in ASUSWRT 3.0.0.4.384.20308. When processing the /start_apply.htm POST data, there is a command... |
| CVE-2018-14502 | CRITICAL | 9.8 | 2.7% | Mar 10, 2020 | controllers/quizzes.php in the Kiboko Chained Quiz plugin before 1.0.9 for WordPress allows remote unauthenticated users... |
| CVE-2018-16357 | CRITICAL | 9.8 | 1.8% | Mar 2, 2020 | An issue was discovered in PbootCMS. There is a SQL injection via the api.php/Cms/search order parameter. |
| CVE-2018-16356 | CRITICAL | 9.8 | 1.8% | Mar 2, 2020 | An issue was discovered in PbootCMS. There is a SQL injection via the api.php/List/index order parameter. |
| CVE-2018-14705 | CRITICAL | 9.8 | 1.9% | Feb 24, 2020 | In Drobo 5N2 4.0.5, all optional applications lack any form of authentication/authorization validation. As a result, any... |
| CVE-2018-16272 | CRITICAL | 9.8 | 1.6% | Jan 22, 2020 | The wpa_supplicant system service in Samsung Galaxy Gear series allows an unprivileged process to fully control the Wi-F... |
| CVE-2018-10389 | CRITICAL | 9.8 | 2.3% | Dec 23, 2019 | Format string vulnerability in the logMess function in TFTP Server MT 1.65 and earlier allows remote attackers to perfor... |
| CVE-2018-10388 | CRITICAL | 9.8 | 4.4% | Dec 23, 2019 | Format string vulnerability in the logMess function in TFTP Server SP 1.66 and earlier allows remote attackers to perfor... |
| CVE-2018-10387 | CRITICAL | 9.8 | 2.9% | Dec 23, 2019 | Heap-based overflow vulnerability in TFTP Server SP 1.66 and earlier allows remote attackers to perform a denial of serv... |
| CVE-2018-7282 | CRITICAL | 9.8 | 10.1% | Dec 6, 2019 | The username parameter of the TITool PrintMonitor solution during the login request is vulnerable to and/or time-based b... |
| CVE-2018-0730 | CRITICAL | 9.8 | 2.0% | Dec 4, 2019 | This command injection vulnerability in File Station allows attackers to execute commands on the affected device. To fix... |
| CVE-2018-0729 | CRITICAL | 9.8 | 2.3% | Dec 4, 2019 | This command injection vulnerability in Music Station allows attackers to execute commands on the affected device. To fi... |
| CVE-2018-8879 | CRITICAL | 9.8 | 17.2% | Nov 21, 2019 | Stack-based buffer overflow in Asuswrt-Merlin firmware for ASUS devices older than 384.4 and ASUS firmware before 3.0.0.... |
| CVE-2018-20687 | CRITICAL | 9.8 | 2.5% | Nov 18, 2019 | An XML external entity (XXE) vulnerability in CommandCenterWebServices/.*?wsdl in Raritan CommandCenter Secure Gateway b... |
| CVE-2018-4031 | CRITICAL | 10 | 2.7% | Oct 31, 2019 | An exploitable vulnerability exists in the safe browsing function of the CUJO Smart Firewall, version 7003. The flaw lie... |
Check if your code is affected by 2018 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now