2018 CVE Vulnerabilities
17,817 CVEs published in 2018.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2018-14980 | — | — | 0.4% | Apr 25, 2019 | The ASUS ZenFone 3 Max Android device with a build fingerprint of asus/US_Phone/ASUS_X008_1:7.0/NRD90M/US_Phone-14.14.17... |
| CVE-2018-14559 | — | — | 1.4% | Apr 25, 2019 | An issue was discovered on Tenda AC7 devices with firmware through V15.03.06.44_CN(AC7), AC9 devices with firmware throu... |
| CVE-2018-14557 | — | — | 1.4% | Apr 25, 2019 | An issue was discovered on Tenda AC7 devices with firmware through V15.03.06.44_CN(AC7), AC9 devices with firmware throu... |
| CVE-2018-18286 | — | — | 1.8% | Apr 25, 2019 | SQL injection vulnerabilities in CMG Suite 8.4 SP2 and earlier, could allow an unauthenticated attacker to conduct an SQ... |
| CVE-2018-12244 | — | — | 1.1% | Apr 25, 2019 | SEP (Mac client) prior to and including 12.1 RU6 MP9 and prior to 14.2 RU1 may be susceptible to a CSV/DDE injection (al... |
| CVE-2018-1360 | — | — | 0.9% | Apr 25, 2019 | A cleartext transmission of sensitive information vulnerability in Fortinet FortiManager 5.2.0 through 5.2.7, 5.4.0 and ... |
| CVE-2018-19442 | — | — | 7.5% | Apr 25, 2019 | A Buffer Overflow in Network::AuthenticationClient::VerifySignature in /bin/astro in Neato Botvac Connected 2.2.0 allows... |
| CVE-2018-18369 | — | — | 2.4% | Apr 25, 2019 | Norton Security (Windows client) prior to 22.16.3 and SEP SBE (Windows client) prior to Cloud Agent 3.00.31.2817, NIS-22... |
| CVE-2018-20053 | — | — | 2.2% | Apr 25, 2019 | An issue was discovered on Cerner Connectivity Engine (CCE) 4 devices. The hostname, timezone, and NTP server configurat... |
| CVE-2018-20052 | — | — | 0.4% | Apr 25, 2019 | An issue was discovered on Cerner Connectivity Engine (CCE) 4 devices. The user running the main CCE firmware has NOPASS... |
| CVE-2018-20823 | — | — | 1.5% | Apr 25, 2019 | The gyroscope on Xiaomi Mi 5s devices allows attackers to cause a denial of service (resonance and false data) via a 20.... |
| CVE-2018-7575 | — | — | 0.5% | Apr 24, 2019 | Google TensorFlow 1.7.x and earlier is affected by a Buffer Overflow vulnerability. The type of exploitation is context-... |
| CVE-2018-7574 | — | — | — | Apr 24, 2019 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2018-7576, CVE-2018-21233. Reason: this candidate was... |
| CVE-2018-20434 | — | — | 71.5% | Apr 24, 2019 | LibreNMS 1.46 allows remote attackers to execute arbitrary OS commands by using the $_POST['community'] parameter to htm... |
| CVE-2018-18251 | — | — | 1.6% | Apr 24, 2019 | Deltek Vision 7.x before 7.6 permits the execution of any attacker supplied SQL statement through a custom RPC over HTTP... |
| CVE-2018-7577 | — | — | 0.4% | Apr 24, 2019 | Memcpy parameter overlap in Google Snappy library 1.1.4, as used in Google TensorFlow before 1.7.1, could result in a cr... |
| CVE-2018-10055 | — | — | 0.4% | Apr 24, 2019 | Invalid memory access and/or a heap buffer overflow in the TensorFlow XLA compiler in Google TensorFlow before 1.7.1 cou... |
| CVE-2018-13443 | — | — | 2.1% | Apr 24, 2019 | EOS.IO jit-wasm 4.1 has a heap-based buffer overflow via a crafted wast file. |
| CVE-2018-8825 | — | — | 0.6% | Apr 23, 2019 | Google TensorFlow 1.7 and below is affected by: Buffer Overflow. The impact is: execute arbitrary code (local). |
| CVE-2018-7576 | — | — | 0.4% | Apr 23, 2019 | Google TensorFlow 1.6.x and earlier is affected by: Null Pointer Dereference. The type of exploitation is: context-depen... |
| CVE-2018-3314 | — | — | 1.1% | Apr 23, 2019 | Vulnerability in the MICROS Relate CRM Software component of Oracle Retail Applications (subcomponent: Customer). The su... |
| CVE-2018-3312 | — | — | 0.9% | Apr 23, 2019 | Vulnerability in the Oracle Retail Customer Engagement component of Oracle Retail Applications (subcomponent: Segment). ... |
| CVE-2018-3123 | — | — | 2.1% | Apr 23, 2019 | Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: libmysqld). Supported versions that a... |
| CVE-2018-3120 | — | — | 1.2% | Apr 23, 2019 | Vulnerability in the MICROS Lucas component of Oracle Retail Applications (subcomponent: Security). Supported versions t... |
| CVE-2018-2880 | — | — | 1.7% | Apr 23, 2019 | Vulnerability in the MICROS Retail-J component of Oracle Retail Applications (subcomponent: Back Office). The supported ... |
Check if your code is affected by 2018 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now