2018 CVE Vulnerabilities

17,817 CVEs published in 2018.

CVE IDSeverityCVSSDescription
CVE-2018-0971An information disclosure vulnerability exists in the Windows kernel that could allow an attacker to retrieve informatio...
CVE-2018-0970An information disclosure vulnerability exists in the Windows kernel that could allow an attacker to retrieve informatio...
CVE-2018-0969An information disclosure vulnerability exists in the Windows kernel that could allow an attacker to retrieve informatio...
CVE-2018-0968An information disclosure vulnerability exists in the Windows kernel that could allow an attacker to retrieve informatio...
CVE-2018-0967A denial of service vulnerability exists in the way that Windows SNMP Service handles malformed SNMP traps, aka "Windows...
CVE-2018-0966A security feature bypass exists when Device Guard incorrectly validates an untrusted file, aka "Device Guard Security F...
CVE-2018-0964An information disclosure vulnerability exists when Windows Hyper-V on a host operating system fails to properly validat...
CVE-2018-0963An elevation of privilege vulnerability exists in the way that the Windows Kernel handles objects in memory, aka "Window...
CVE-2018-0960An information disclosure vulnerability exists when the Windows kernel improperly handles objects in memory, aka "Window...
CVE-2018-0957An information disclosure vulnerability exists when Windows Hyper-V on a host operating system fails to properly validat...
CVE-2018-0956A denial of service vulnerability exists in the HTTP 2.0 protocol stack (HTTP.sys) when HTTP.sys improperly parses speci...
CVE-2018-0950An information disclosure vulnerability exists when Office renders Rich Text Format (RTF) email messages containing OLE ...
CVE-2018-0920A remote code execution vulnerability exists in Microsoft Excel software when the software fails to properly handle obje...
CVE-2018-0892An information disclosure vulnerability exists when Microsoft Edge improperly handles objects in memory, aka "Microsoft ...
CVE-2018-0890A security feature bypass vulnerability exists when Active Directory incorrectly applies Network Isolation settings, aka...
CVE-2018-0887An information disclosure vulnerability exists when the Windows kernel fails to properly initialize a memory address, ak...
CVE-2018-0870A remote code execution vulnerability exists when Internet Explorer improperly accesses objects in memory, aka "Internet...
CVE-2018-3888HIGH7.8A memory corruption vulnerability exists in the PCX-parsing functionality of Computerinsel Photoline 20.53. A specially ...
CVE-2018-3887HIGH7.8A memory corruption vulnerability exists in the PCX-parsing functionality of Computerinsel Photoline 20.53. A specially ...
CVE-2018-3886HIGH7.8A memory corruption vulnerability exists in the PCX-parsing functionality of Computerinsel Photoline 20.53. A specially ...
CVE-2018-10054HIGH8.8H2 1.4.197, as used in Datomic before 0.9.5697 and other products, allows remote code execution because CREATE ALIAS can...
CVE-2018-10052iScripts SupportDesk v4.3 has XSS via the admin/inteligentsearchresult.php txtinteligentsearch parameter.
CVE-2018-10051iScripts SupportDesk v4.3 has XSS via the staff/inteligentsearchresult.php txtinteligentsearch parameter.
CVE-2018-10050iScripts eSwap v2.4 has SQL injection via the "registration_settings.php" ddlFree parameter in the Admin Panel.
CVE-2018-10049iScripts eSwap v2.4 has XSS via the "registration_settings.php" txtDate parameter in the Admin Panel.

Check if your code is affected by 2018 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now