2018 CVE Vulnerabilities
17,817 CVEs published in 2018.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2018-0167 | HIGH | 8.8 | 3.4% | Mar 28, 2018 | Multiple Buffer Overflow vulnerabilities in the Link Layer Discovery Protocol (LLDP) subsystem of Cisco IOS Software, Ci... |
| CVE-2018-0165 | — | — | 0.7% | Mar 28, 2018 | A vulnerability in the Internet Group Management Protocol (IGMP) packet-processing functionality of Cisco IOS XE Softwar... |
| CVE-2018-0164 | — | — | 1.9% | Mar 28, 2018 | A vulnerability in the Switch Integrated Security Features of Cisco IOS XE Software could allow an unauthenticated, remo... |
| CVE-2018-0163 | MEDIUM | 6.5 | 0.7% | Mar 28, 2018 | A vulnerability in the 802.1x multiple-authentication (multi-auth) feature of Cisco IOS Software could allow an unauthen... |
| CVE-2018-0161 | MEDIUM | 6.3 | 4.2% | Mar 28, 2018 | A vulnerability in the Simple Network Management Protocol (SNMP) subsystem of Cisco IOS Software running on certain mode... |
| CVE-2018-0160 | — | — | 1.4% | Mar 28, 2018 | A vulnerability in Simple Network Management Protocol (SNMP) subsystem of Cisco IOS XE Software could allow an authentic... |
| CVE-2018-0159 | HIGH | 7.5 | 6.9% | Mar 28, 2018 | A vulnerability in the implementation of Internet Key Exchange Version 1 (IKEv1) functionality in Cisco IOS Software and... |
| CVE-2018-0158 | HIGH | 8.6 | 7.2% | Mar 28, 2018 | A vulnerability in the Internet Key Exchange Version 2 (IKEv2) module of Cisco IOS Software and Cisco IOS XE Software co... |
| CVE-2018-0157 | HIGH | 8.6 | 2.7% | Mar 28, 2018 | A vulnerability in the Zone-Based Firewall code of Cisco IOS XE Software could allow an unauthenticated, remote attacker... |
| CVE-2018-0156 | HIGH | 7.5 | 8.4% | Mar 28, 2018 | A vulnerability in the Smart Install feature of Cisco IOS Software and Cisco IOS XE Software could allow an unauthentica... |
| CVE-2018-0155 | HIGH | 8.6 | 7.7% | Mar 28, 2018 | A vulnerability in the Bidirectional Forwarding Detection (BFD) offload implementation of Cisco Catalyst 4500 Series Swi... |
| CVE-2018-0154 | HIGH | 7.5 | 7.1% | Mar 28, 2018 | A vulnerability in the crypto engine of the Cisco Integrated Services Module for VPN (ISM-VPN) running Cisco IOS Softwar... |
| CVE-2018-0152 | HIGH | 8.8 | 3.3% | Mar 28, 2018 | A vulnerability in the web-based user interface (web UI) of Cisco IOS XE Software could allow an authenticated, remote a... |
| CVE-2018-0151 | CRITICAL | 9.8 | 14.2% | Mar 28, 2018 | A vulnerability in the quality of service (QoS) subsystem of Cisco IOS Software and Cisco IOS XE Software could allow an... |
| CVE-2018-0150 | CRITICAL | 9.8 | 4.3% | Mar 28, 2018 | A vulnerability in Cisco IOS XE Software could allow an unauthenticated, remote attacker to log in to a device running a... |
| CVE-2018-6608 | — | — | 3.4% | Mar 28, 2018 | In the WebRTC component in Opera 51.0.2830.55, after visiting a web site that attempts to gather complete client informa... |
| CVE-2018-8885 | — | — | 0.2% | Mar 28, 2018 | screenresolution-mechanism in screen-resolution-extra 0.17.2 does not properly use the PolicyKit D-Bus API, which allows... |
| CVE-2018-8820 | — | — | 1.8% | Mar 28, 2018 | An issue was discovered in Square 9 GlobalForms 6.2.x. A Time Based SQL injection vulnerability in the "match" parameter... |
| CVE-2018-1064 | — | — | 3.0% | Mar 28, 2018 | libvirt version before 4.2.0-rc1 is vulnerable to a resource exhaustion as a result of an incomplete fix for CVE-2018-57... |
| CVE-2018-7498 | — | — | 0.7% | Mar 28, 2018 | In Philips Alice 6 System version R8.0.2 or prior, the lack of proper data encryption passes up the guarantees of confid... |
| CVE-2018-5451 | — | — | 2.7% | Mar 28, 2018 | In Philips Alice 6 System version R8.0.2 or prior, when an actor claims to have a given identity, the software does not ... |
| CVE-2018-9110 | CRITICAL | 9.1 | 2.9% | Mar 28, 2018 | Studio 42 elFinder before 2.1.37 has a directory traversal vulnerability in elFinder.class.php with the zipdl() function... |
| CVE-2018-7676 | LOW | 3.9 | 0.9% | Mar 28, 2018 | The NetIQ Identity Manager, in versions prior to 4.7, userapp with log / trace enabled may leak sensitive information. |
| CVE-2018-7674 | LOW | 2.1 | 0.8% | Mar 28, 2018 | The NetIQ Identity Manager user console, in versions prior to 4.7, is susceptible to URL redirection. |
| CVE-2018-1142 | — | — | 0.5% | Mar 28, 2018 | Tenable Appliance versions 4.6.1 and earlier have been found to contain a single XSS vulnerability. Utilizing a speciall... |
Check if your code is affected by 2018 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now