2018 CVE Vulnerabilities
17,817 CVEs published in 2018.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2018-1441 | MEDIUM | 6.1 | 0.9% | Mar 14, 2018 | IBM Application Performance Management - Response Time Monitoring Agent (IBM Monitoring 8.1.3 and 8.1.4) is vulnerable t... |
| CVE-2018-1437 | HIGH | 7.8 | 2.3% | Mar 14, 2018 | IBM Notes 8.5 and 9.0 could allow an attacker to execute arbitrary code on the system, caused by an error related to mul... |
| CVE-2018-1435 | HIGH | 7.8 | 2.6% | Mar 14, 2018 | IBM Notes 8.5 and 9.0 is vulnerable to a DLL hijacking attack. A remote attacker could trick a user to double click a ma... |
| CVE-2018-1386 | HIGH | 7.8 | 0.3% | Mar 14, 2018 | IBM Tivoli Workload Automation for AIX (IBM Workload Scheduler 8.6, 9.1, 9.2, 9.3, and 9.4) contains directories with im... |
| CVE-2018-1000128 | — | — | — | Mar 13, 2018 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2018-7752. Reason: This candidate is a reservation ... |
| CVE-2018-1000127 | — | — | 2.3% | Mar 13, 2018 | memcached version prior to 1.4.37 contains an Integer Overflow vulnerability in items.c:item_free() that can result in d... |
| CVE-2018-1000126 | — | — | 1.3% | Mar 13, 2018 | Ajenti version 2 contains an Information Disclosure vulnerability in Line 176 of the code source that can result in user... |
| CVE-2018-1000125 | — | — | 1.4% | Mar 13, 2018 | inversoft prime-jwt version prior to version 1.3.0 or prior to commit 0d94dcef0133d699f21d217e922564adbb83a227 contains ... |
| CVE-2018-1000124 | CRITICAL | 10 | 1.8% | Mar 13, 2018 | I Librarian I-librarian version 4.8 and earlier contains a XML External Entity (XXE) vulnerability in line 154 of import... |
| CVE-2018-1000123 | — | — | 1.5% | Mar 13, 2018 | Ionic Team Cordova plugin iOS Keychain version before commit 18233ca25dfa92cca018b9c0935f43f78fd77fbf contains an Inform... |
| CVE-2018-1227 | — | — | 1.2% | Mar 13, 2018 | Pivotal Concourse after 2018-03-05 might allow remote attackers to have an unspecified impact, if a customer obtained th... |
| CVE-2018-7405 | — | — | 1.3% | Mar 13, 2018 | Cross-site scripting (XSS) in Zoho ManageEngine EventLog Analyzer before 11.12 Build 11120 allows remote attackers to in... |
| CVE-2018-7750 | CRITICAL | 9.8 | 27.1% | Mar 13, 2018 | transport.py in the SSH server implementation of Paramiko before 1.17.6, 1.18.x before 1.18.5, 2.0.x before 2.0.8, 2.1.x... |
| CVE-2018-6305 | — | — | 1.4% | Mar 13, 2018 | Denial of service in Gemalto's Sentinel LDK RTE version before 7.65 |
| CVE-2018-6304 | — | — | 1.9% | Mar 13, 2018 | Stack overflow in custom XML-parser in Gemalto's Sentinel LDK RTE version before 7.65 leads to remote denial of service |
| CVE-2018-6303 | — | — | 1.1% | Mar 13, 2018 | Denial of service by uploading malformed firmware in Hanwha Techwin Smartcams |
| CVE-2018-6302 | — | — | 1.1% | Mar 13, 2018 | Denial of service by blocking of new camera registration on the cloud server in Hanwha Techwin Smartcams |
| CVE-2018-6301 | — | — | 1.1% | Mar 13, 2018 | Arbitrary camera access and monitoring via cloud in Hanwha Techwin Smartcams |
| CVE-2018-6300 | — | — | 1.1% | Mar 13, 2018 | Remote password change in Hanwha Techwin Smartcams |
| CVE-2018-6299 | — | — | 1.4% | Mar 13, 2018 | Authentication bypass in Hanwha Techwin Smartcams |
| CVE-2018-6298 | — | — | 3.7% | Mar 13, 2018 | Remote code execution in Hanwha Techwin Smartcams |
| CVE-2018-6297 | — | — | 1.2% | Mar 13, 2018 | Buffer overflow in Hanwha Techwin Smartcams |
| CVE-2018-6296 | — | — | 0.8% | Mar 13, 2018 | An undocumented (hidden) capability for switching the web interface in Hanwha Techwin Smartcams |
| CVE-2018-6295 | — | — | 0.8% | Mar 13, 2018 | Unencrypted way of remote control and communications in Hanwha Techwin Smartcams |
| CVE-2018-6294 | — | — | 1.1% | Mar 13, 2018 | Unsecured way of firmware update in Hanwha Techwin Smartcams |
Check if your code is affected by 2018 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now