2018 CVE Vulnerabilities
17,817 CVEs published in 2018.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2018-25217 | HIGH | 7.8 | 0.2% | Mar 26, 2026 | PDF Explorer 1.5.66.2 contains a structured exception handler (SEH) overflow vulnerability that allows local attackers t... |
| CVE-2018-25213 | HIGH | 7.8 | 0.2% | Mar 26, 2026 | Nsauditor 3.0.28.0 contains a structured exception handling buffer overflow vulnerability that allows local attackers to... |
| CVE-2018-25212 | HIGH | 7.8 | 0.2% | Mar 26, 2026 | Boxoft wav-wma Converter 1.0 contains a local buffer overflow vulnerability in structured exception handling that allows... |
| CVE-2018-25211 | HIGH | 7.8 | 0.3% | Mar 26, 2026 | Allok Video Splitter 3.1.1217 contains a buffer overflow vulnerability that allows local attackers to cause a denial of ... |
| CVE-2018-25209 | HIGH | 8.8 | 0.3% | Mar 26, 2026 | OpenBiz Cubi Lite 3.0.8 contains a SQL injection vulnerability in the login form that allows unauthenticated attackers t... |
| CVE-2018-25208 | HIGH | 8.2 | 0.3% | Mar 26, 2026 | qdPM 9.1 contains an SQL injection vulnerability that allows unauthenticated attackers to extract database information b... |
| CVE-2018-25207 | HIGH | 7.1 | 0.3% | Mar 26, 2026 | Online Quiz Maker 1.0 contains SQL injection vulnerabilities in the catid and usern parameters that allow authenticated ... |
| CVE-2018-25206 | HIGH | 8.8 | 0.2% | Mar 26, 2026 | KomSeo Cart 1.3 contains an SQL injection vulnerability that allows attackers to inject SQL commands through the 'my_ite... |
| CVE-2018-25205 | HIGH | 8.8 | 0.3% | Mar 26, 2026 | ASP.NET jVideo Kit 1.0 contains an SQL injection vulnerability that allows unauthenticated attackers to inject SQL comma... |
| CVE-2018-25203 | HIGH | 8.8 | 0.3% | Mar 26, 2026 | Online Store System CMS 1.0 contains an SQL injection vulnerability that allows unauthenticated attackers to manipulate ... |
| CVE-2018-25202 | HIGH | 8.8 | 0.2% | Mar 26, 2026 | SAT CFDI 3.3 contains an SQL injection vulnerability that allows attackers to manipulate database queries by injecting S... |
| CVE-2018-25200 | HIGH | 8.8 | 0.2% | Mar 6, 2026 | OOP CMS BLOG 1.0 contains a cross-site request forgery vulnerability that allows unauthenticated attackers to create adm... |
| CVE-2018-25197 | HIGH | 8.8 | 0.2% | Mar 6, 2026 | PlayJoom 0.10.1 contains an SQL injection vulnerability that allows unauthenticated attackers to execute arbitrary SQL q... |
| CVE-2018-25196 | HIGH | 8.8 | 0.3% | Mar 6, 2026 | ServerZilla 1.0 contains an SQL injection vulnerability that allows unauthenticated attackers to manipulate database que... |
| CVE-2018-25194 | HIGH | 8.8 | 0.3% | Mar 6, 2026 | Nominas 0.27 contains an SQL injection vulnerability that allows unauthenticated attackers to execute arbitrary SQL quer... |
| CVE-2018-25193 | HIGH | 8.7 | 0.3% | Mar 6, 2026 | Mongoose Web Server 6.9 contains a denial of service vulnerability that allows remote attackers to crash the service by ... |
| CVE-2018-25192 | HIGH | 8.8 | 0.3% | Mar 6, 2026 | GPS Tracking System 2.12 contains an SQL injection vulnerability that allows unauthenticated attackers to bypass authent... |
| CVE-2018-25191 | HIGH | 7.1 | 0.2% | Mar 6, 2026 | Facturation System 1.0 contains an SQL injection vulnerability that allows authenticated attackers to execute arbitrary ... |
| CVE-2018-25189 | HIGH | 8.8 | 0.2% | Mar 6, 2026 | Data Center Audit 2.6.2 contains an SQL injection vulnerability in the username parameter of dca_login.php that allows u... |
| CVE-2018-25188 | HIGH | 8.8 | 0.2% | Mar 6, 2026 | Webiness Inventory 2.3 contains an SQL injection vulnerability that allows unauthenticated attackers to execute arbitrar... |
| CVE-2018-25182 | HIGH | 8.8 | 0.2% | Mar 6, 2026 | Silurus Classifieds Script 2.0 contains an SQL injection vulnerability that allows unauthenticated attackers to execute ... |
| CVE-2018-25181 | HIGH | 8.7 | 0.6% | Mar 6, 2026 | Musicco 2.0.0 contains a path traversal vulnerability that allows unauthenticated attackers to download arbitrary direct... |
| CVE-2018-25180 | HIGH | 7.1 | 0.2% | Mar 6, 2026 | Maitra 1.7.2 contains an sql injection vulnerability that allows authenticated attackers to execute arbitrary SQL querie... |
| CVE-2018-25179 | HIGH | 8.8 | 0.2% | Mar 6, 2026 | Gumbo CMS 0.99 contains an SQL injection vulnerability that allows unauthenticated attackers to execute arbitrary SQL qu... |
| CVE-2018-25178 | HIGH | 8.7 | 0.6% | Mar 6, 2026 | Easyndexer 1.0 contains an arbitrary file download vulnerability that allows unauthenticated attackers to download sensi... |
Check if your code is affected by 2018 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now