2018 CVE Vulnerabilities
17,817 CVEs published in 2018.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2018-0175 | HIGH | 8 | 3.6% | Mar 28, 2018 | Format String vulnerability in the Link Layer Discovery Protocol (LLDP) subsystem of Cisco IOS Software, Cisco IOS XE So... |
| CVE-2018-0174 | HIGH | 8.6 | 7.6% | Mar 28, 2018 | A vulnerability in the DHCP option 82 encapsulation functionality of Cisco IOS Software and Cisco IOS XE Software could ... |
| CVE-2018-0173 | HIGH | 8.6 | 7.6% | Mar 28, 2018 | A vulnerability in the Cisco IOS Software and Cisco IOS XE Software function that restores encapsulated option 82 inform... |
| CVE-2018-0172 | HIGH | 8.6 | 7.8% | Mar 28, 2018 | A vulnerability in the DHCP option 82 encapsulation functionality of Cisco IOS Software and Cisco IOS XE Software could ... |
| CVE-2018-0170 | HIGH | 7.5 | 2.7% | Mar 28, 2018 | A vulnerability in the Cisco Umbrella Integration feature of Cisco IOS XE Software could allow an unauthenticated, remot... |
| CVE-2018-0167 | HIGH | 8.8 | 3.4% | Mar 28, 2018 | Multiple Buffer Overflow vulnerabilities in the Link Layer Discovery Protocol (LLDP) subsystem of Cisco IOS Software, Ci... |
| CVE-2018-0159 | HIGH | 7.5 | 6.9% | Mar 28, 2018 | A vulnerability in the implementation of Internet Key Exchange Version 1 (IKEv1) functionality in Cisco IOS Software and... |
| CVE-2018-0158 | HIGH | 8.6 | 7.2% | Mar 28, 2018 | A vulnerability in the Internet Key Exchange Version 2 (IKEv2) module of Cisco IOS Software and Cisco IOS XE Software co... |
| CVE-2018-0157 | HIGH | 8.6 | 2.7% | Mar 28, 2018 | A vulnerability in the Zone-Based Firewall code of Cisco IOS XE Software could allow an unauthenticated, remote attacker... |
| CVE-2018-0156 | HIGH | 7.5 | 8.4% | Mar 28, 2018 | A vulnerability in the Smart Install feature of Cisco IOS Software and Cisco IOS XE Software could allow an unauthentica... |
| CVE-2018-0155 | HIGH | 8.6 | 7.7% | Mar 28, 2018 | A vulnerability in the Bidirectional Forwarding Detection (BFD) offload implementation of Cisco Catalyst 4500 Series Swi... |
| CVE-2018-0154 | HIGH | 7.5 | 7.1% | Mar 28, 2018 | A vulnerability in the crypto engine of the Cisco Integrated Services Module for VPN (ISM-VPN) running Cisco IOS Softwar... |
| CVE-2018-0152 | HIGH | 8.8 | 3.3% | Mar 28, 2018 | A vulnerability in the web-based user interface (web UI) of Cisco IOS XE Software could allow an authenticated, remote a... |
| CVE-2018-7195 | HIGH | 8.1 | 1.0% | Mar 27, 2018 | Enhancesoft osTicket before 1.10.2 allows remote attackers to reset arbitrary passwords (when an associated e-mail addre... |
| CVE-2018-1267 | HIGH | 8.1 | 1.0% | Mar 27, 2018 | Cloud Foundry Silk CNI plugin, versions prior to 0.2.0, contains an improper access control vulnerability. If the platfo... |
| CVE-2018-1266 | HIGH | 8.1 | 1.1% | Mar 27, 2018 | Cloud Foundry Cloud Controller, versions prior to 1.52.0, contains information disclosure and path traversal vulnerabili... |
| CVE-2018-9010 | HIGH | 7.2 | 9.8% | Mar 25, 2018 | Intelbras TELEFONE IP TIP200/200 LITE 60.0.75.29 devices allow remote authenticated admins to read arbitrary files via t... |
| CVE-2018-8969 | HIGH | 7.5 | 2.6% | Mar 24, 2018 | An issue was discovered in zzcms 8.2. user/licence_save.php allows remote attackers to delete arbitrary files via direct... |
| CVE-2018-8968 | HIGH | 7.5 | 2.6% | Mar 24, 2018 | An issue was discovered in zzcms 8.2. user/manage.php allows remote attackers to delete arbitrary files via directory tr... |
| CVE-2018-8966 | HIGH | 7.5 | 1.8% | Mar 24, 2018 | An issue was discovered in zzcms 8.2. It allows PHP code injection via the siteurl parameter to install/index.php, as de... |
| CVE-2018-8965 | HIGH | 7.5 | 2.6% | Mar 24, 2018 | An issue was discovered in zzcms 8.2. user/ppsave.php allows remote attackers to delete arbitrary files via directory tr... |
| CVE-2018-1000137 | HIGH | 8.8 | 0.6% | Mar 23, 2018 | I, Librarian version 4.8 and earlier contains a Cross site Request Forgery (CSRF) vulnerability in users.php that can re... |
| CVE-2018-1448 | HIGH | 7.7 | 0.4% | Mar 22, 2018 | IBM DB2 for Linux, UNIX and Windows 9.7, 10.1, 10.5, and 11.1 (includes DB2 Connect Server) contains a vulnerability tha... |
| CVE-2018-1426 | HIGH | 7.4 | 2.5% | Mar 22, 2018 | IBM GSKit (IBM DB2 for Linux, UNIX and Windows 9.7, 10.1, 10.5, and 11.1) duplicates the PRNG state across fork() system... |
| CVE-2018-8905 | HIGH | 8.8 | 3.1% | Mar 22, 2018 | In LibTIFF 4.0.9, a heap-based buffer overflow occurs in the function LZWDecodeCompat in tif_lzw.c via a crafted TIFF fi... |
Check if your code is affected by 2018 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now