2018 CVE Vulnerabilities
17,817 CVEs published in 2018.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2018-7182 | — | — | 29.8% | Mar 6, 2018 | The ctl_getitem method in ntpd in ntp-4.2.8p6 before 4.2.8p11 allows remote attackers to cause a denial of service (out-... |
| CVE-2018-7170 | MEDIUM | 5.3 | 2.8% | Mar 6, 2018 | ntpd in ntp 4.2.x before 4.2.8p7 and 4.3.x before 4.3.92 allows authenticated users that know the private symmetric key ... |
| CVE-2018-6811 | — | — | 1.2% | Mar 6, 2018 | Multiple cross-site scripting (XSS) vulnerabilities in Citrix NetScaler ADC 10.5, 11.0, 11.1, and 12.0, and NetScaler Ga... |
| CVE-2018-6810 | — | — | 4.6% | Mar 6, 2018 | Directory traversal vulnerability in NetScaler ADC 10.5, 11.0, 11.1, and 12.0, and NetScaler Gateway 10.5, 11.0, 11.1, a... |
| CVE-2018-6809 | — | — | 4.4% | Mar 6, 2018 | NetScaler ADC 10.5, 11.0, 11.1, and 12.0, and NetScaler Gateway 10.5, 11.0, 11.1, and 12.0 allow remote attackers to gai... |
| CVE-2018-6808 | — | — | 2.5% | Mar 6, 2018 | NetScaler ADC 10.5, 11.0, 11.1, and 12.0, and NetScaler Gateway 10.5, 11.0, 11.1, and 12.0 allow remote attackers to dow... |
| CVE-2018-6530 | CRITICAL | 9.8 | 96.6% | Mar 6, 2018 | OS command injection vulnerability in soap.cgi (soapcgi_main in cgibin) in D-Link DIR-880L DIR-880L_REVA_FIRMWARE_PATCH_... |
| CVE-2018-6529 | MEDIUM | 6.1 | 1.7% | Mar 6, 2018 | XSS vulnerability in htdocs/webinc/js/bsc_sms_inbox.php in D-Link DIR-868L DIR868LA1_FW112b04 and previous versions, DIR... |
| CVE-2018-6528 | MEDIUM | 6.1 | 1.7% | Mar 6, 2018 | XSS vulnerability in htdocs/webinc/body/bsc_sms_send.php in D-Link DIR-868L DIR868LA1_FW112b04 and previous versions, DI... |
| CVE-2018-6527 | MEDIUM | 6.1 | 1.7% | Mar 6, 2018 | XSS vulnerability in htdocs/webinc/js/adv_parent_ctrl_map.php in D-Link DIR-868L DIR868LA1_FW112b04 and previous version... |
| CVE-2018-6019 | — | — | 0.3% | Mar 6, 2018 | Samsung Display Solutions App before 3.02 for Android allows man-in-the-middle attackers to spoof B2B content by leverag... |
| CVE-2018-5730 | LOW | 3.8 | 2.3% | Mar 6, 2018 | MIT krb5 1.6 or later allows an authenticated kadmin with permission to add principals to an LDAP Kerberos database to c... |
| CVE-2018-5729 | MEDIUM | 4.7 | 2.6% | Mar 6, 2018 | MIT krb5 1.6 or later allows an authenticated kadmin with permission to add principals to an LDAP Kerberos database to c... |
| CVE-2018-1343 | — | — | 1.4% | Mar 6, 2018 | PAM exposure enabling unauthenticated access to remote host |
| CVE-2018-7735 | — | — | 1.3% | Mar 6, 2018 | Afian FileRun (before 2018.02.13) suffers from a remote SQL injection vulnerability, when logged in as superuser, via th... |
| CVE-2018-7734 | — | — | 1.3% | Mar 6, 2018 | Afian FileRun (before 2018.02.13) suffers from a remote SQL injection vulnerability, when logged in as superuser, via th... |
| CVE-2018-7733 | — | — | 0.5% | Mar 6, 2018 | An issue was discovered in YxtCMF 3.1. RbacController.class.php has CSRF, as demonstrated by modifying an administrator ... |
| CVE-2018-7732 | — | — | 1.1% | Mar 6, 2018 | An issue was discovered in YxtCMF 3.1. SQL Injection exists in ShitiController.class.php via the ids array parameter to ... |
| CVE-2018-7731 | — | — | 1.3% | Mar 6, 2018 | An issue was discovered in Exempi through 2.4.4. XMPFiles/source/FormatSupport/WEBP_Support.cpp does not check whether a... |
| CVE-2018-7730 | — | — | 1.4% | Mar 6, 2018 | An issue was discovered in Exempi through 2.4.4. A certain case of a 0xffffffff length is mishandled in XMPFiles/source/... |
| CVE-2018-7729 | — | — | 1.3% | Mar 6, 2018 | An issue was discovered in Exempi through 2.4.4. There is a stack-based buffer over-read in the PostScript_MetaHandler::... |
| CVE-2018-7728 | — | — | 1.4% | Mar 6, 2018 | An issue was discovered in Exempi through 2.4.4. XMPFiles/source/FileHandlers/TIFF_Handler.cpp mishandles a case of a ze... |
| CVE-2018-7727 | — | — | 1.4% | Mar 6, 2018 | An issue was discovered in ZZIPlib 0.13.68. There is a memory leak triggered in the function zzip_mem_disk_new in memdis... |
| CVE-2018-7726 | — | — | 1.8% | Mar 6, 2018 | An issue was discovered in ZZIPlib 0.13.68. There is a bus error caused by the __zzip_parse_root_directory function of z... |
| CVE-2018-7725 | — | — | 1.8% | Mar 6, 2018 | An issue was discovered in ZZIPlib 0.13.68. An invalid memory address dereference was discovered in zzip_disk_fread in m... |
Check if your code is affected by 2018 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now