2018 CVE Vulnerabilities

17,817 CVEs published in 2018.

CVE IDSeverityCVSSDescription
CVE-2018-7523In Omron CX-Supervisor Versions 3.30 and prior, parsing malformed project files may cause a double free vulnerability.
CVE-2018-7521In Omron CX-Supervisor Versions 3.30 and prior, use after free vulnerabilities can be exploited when CX Supervisor parse...
CVE-2018-7519MEDIUM5.3In Omron CX-Supervisor Versions 3.30 and prior, parsing malformed project files may cause a heap-based buffer overflow.
CVE-2018-7517In Omron CX-Supervisor Versions 3.30 and prior, parsing malformed project files may cause an out of bounds vulnerability...
CVE-2018-7515MEDIUM5.3In Omron CX-Supervisor Versions 3.30 and prior, access of uninitialized pointer vulnerabilities can be exploited when CX...
CVE-2018-7513MEDIUM5.3In Omron CX-Supervisor Versions 3.30 and prior, parsing malformed project files may cause a stack-based buffer overflow.
CVE-2018-3710HIGH7.8Gitlab Community and Enterprise Editions version 10.3.3 is vulnerable to an Insecure Temporary File in the project impor...
CVE-2018-1230Pivotal Spring Batch Admin, all versions, does not contain cross site request forgery protection. A remote unauthenticat...
CVE-2018-1229Pivotal Spring Batch Admin, all versions, contains a stored XSS vulnerability in the file upload feature. An unauthentic...
CVE-2018-8074Yii 2.x before 2.0.15 allows remote attackers to inject unintended search conditions via a variant of the CVE-2018-7269 ...
CVE-2018-8073Yii 2.x before 2.0.15 allows remote attackers to execute arbitrary LUA code via a variant of the CVE-2018-7269 attack in...
CVE-2018-7269The findByCondition function in framework/db/ActiveRecord.php in Yii 2.x before 2.0.15 allows remote attackers to conduc...
CVE-2018-1347MEDIUM5.3The administrative web interface in NetIQ iManager, versions prior to 3.1, are vulnerable to reflected cross site script...
CVE-2018-1346LOW3.1Addresses denial of service attack to eDirectory versions prior to 9.1.
CVE-2018-1345MEDIUM5.9NetIQ iManager, versions prior to 3.1, under some circumstances could be susceptible to an elevation of privilege attack...
CVE-2018-1344LOW3.1Addresses potential communication downgrade attack in NetIQ iManager versions prior to 3.1
CVE-2018-8883Netwide Assembler (NASM) 2.13.02rc2 has a buffer over-read in the parse_line function in asm/parser.c via uncontrolled a...
CVE-2018-8882Netwide Assembler (NASM) 2.13.02rc2 has a stack-based buffer under-read in the function ieee_shr in asm/float.c via a la...
CVE-2018-8881Netwide Assembler (NASM) 2.13.02rc2 has a heap-based buffer over-read in the function tokenize in asm/preproc.c, related...
CVE-2018-8876In 2345 Security Guard 3.6, the driver file (2345Wrath.sys) allows local users to cause a denial of service (BSOD) or po...
CVE-2018-8875In 2345 Security Guard 3.6, the driver file (2345Wrath.sys) allows local users to cause a denial of service (BSOD) or po...
CVE-2018-8874In 2345 Security Guard 3.6, the driver file (2345Wrath.sys) allows local users to cause a denial of service (BSOD) or po...
CVE-2018-8873In 2345 Security Guard 3.6, the driver file (2345NetFirewall.sys) allows local users to cause a denial of service (BSOD)...
CVE-2018-8832enhavo 0.4.0 has XSS via a user-group that contains executable JavaScript code in the user-group name. The XSS attack la...
CVE-2018-8828A Buffer Overflow issue was discovered in Kamailio before 4.4.7, 5.0.x before 5.0.6, and 5.1.x before 5.1.2. A specially...

Check if your code is affected by 2018 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now