2018 CVE Vulnerabilities
17,817 CVEs published in 2018.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2018-6638 | CRITICAL | 9.8 | 4.0% | Feb 28, 2018 | A stack-based buffer overflow (Remote Code Execution) issue was discovered in Design Science MathType 6.9c. This occurs ... |
| CVE-2018-7549 | — | — | 2.7% | Feb 27, 2018 | In params.c in zsh through 5.4.2, there is a crash during a copy of an empty hash table, as demonstrated by typeset -p. |
| CVE-2018-7548 | — | — | 2.6% | Feb 27, 2018 | In subst.c in zsh through 5.4.2, there is a NULL pointer dereference when using ${(PA)...} on an empty array result. |
| CVE-2018-7547 | MEDIUM | 4.8 | 0.5% | Feb 27, 2018 | lyadmin 1.x has XSS via the config[WEB_SITE_TITLE] parameter to the /admin.php?s=/admin/config/groupsave.html URI. |
| CVE-2018-7467 | — | — | 10.5% | Feb 27, 2018 | AxxonSoft Axxon Next has Directory Traversal via an initial /css//..%2f substring in a URI. |
| CVE-2018-7542 | — | — | 0.4% | Feb 27, 2018 | An issue was discovered in Xen 4.8.x through 4.10.x allowing x86 PVH guest OS users to cause a denial of service (NULL p... |
| CVE-2018-7541 | — | — | 0.4% | Feb 27, 2018 | An issue was discovered in Xen through 4.10.x allowing guest OS users to cause a denial of service (hypervisor crash) or... |
| CVE-2018-7540 | — | — | 0.4% | Feb 27, 2018 | An issue was discovered in Xen through 4.10.x allowing x86 PV guest OS users to cause a denial of service (host OS CPU h... |
| CVE-2018-6535 | — | — | 1.4% | Feb 27, 2018 | An issue was discovered in Icinga 2.x through 2.8.1. The lack of a constant-time password comparison function can disclo... |
| CVE-2018-6534 | — | — | 1.1% | Feb 27, 2018 | An issue was discovered in Icinga 2.x through 2.8.1. By sending specially crafted messages, an attacker can cause a NULL... |
| CVE-2018-6533 | — | — | 0.4% | Feb 27, 2018 | An issue was discovered in Icinga 2.x through 2.8.1. By editing the init.conf file, Icinga 2 can be run as root. Followi... |
| CVE-2018-6532 | — | — | 1.4% | Feb 27, 2018 | An issue was discovered in Icinga 2.x through 2.8.1. By sending specially crafted (authenticated and unauthenticated) re... |
| CVE-2018-6481 | CRITICAL | 9.8 | 20.1% | Feb 27, 2018 | A buffer overflow vulnerability in the control protocol of Disk Savvy Enterprise v10.4.18 allows remote attackers to exe... |
| CVE-2018-1425 | — | — | 1.1% | Feb 27, 2018 | IBM Security Guardium Big Data Intelligence (SonarG) 3.1 uses weaker than expected cryptographic algorithms that could a... |
| CVE-2018-1416 | — | — | 1.3% | Feb 27, 2018 | IBM WebSphere Portal 7.0, 8.0, 8.5, and 9.0 is vulnerable to cross-site scripting. This vulnerability allows users to em... |
| CVE-2018-1399 | — | — | 1.0% | Feb 27, 2018 | IBM Daeja ViewONE Professional, Standard & Virtual 4.1.5 and 5.0 is vulnerable to cross-site scripting. This vulnerabili... |
| CVE-2018-1372 | — | — | 2.2% | Feb 27, 2018 | IBM Security Guardium Big Data Intelligence (SonarG) 3.1 does not require that users should have strong passwords by def... |
| CVE-2018-7172 | — | — | 2.7% | Feb 27, 2018 | In index.php in WonderCMS before 2.4.1, remote attackers can delete arbitrary files via directory traversal. |
| CVE-2018-0489 | — | — | 2.2% | Feb 27, 2018 | Shibboleth XMLTooling-C before 1.6.4, as used in Shibboleth Service Provider before 2.6.1.4 on Windows and other product... |
| CVE-2018-4916 | — | — | 15.6% | Feb 27, 2018 | An issue was discovered in Adobe Acrobat Reader 2018.009.20050 and earlier versions, 2017.011.30070 and earlier versions... |
| CVE-2018-4915 | — | — | 15.6% | Feb 27, 2018 | An issue was discovered in Adobe Acrobat Reader 2018.009.20050 and earlier versions, 2017.011.30070 and earlier versions... |
| CVE-2018-4914 | — | — | 13.4% | Feb 27, 2018 | An issue was discovered in Adobe Acrobat Reader 2018.009.20050 and earlier versions, 2017.011.30070 and earlier versions... |
| CVE-2018-4913 | — | — | 14.0% | Feb 27, 2018 | An issue was discovered in Adobe Acrobat Reader 2018.009.20050 and earlier versions, 2017.011.30070 and earlier versions... |
| CVE-2018-4912 | — | — | 13.0% | Feb 27, 2018 | An issue was discovered in Adobe Acrobat Reader 2018.009.20050 and earlier versions, 2017.011.30070 and earlier versions... |
| CVE-2018-4911 | — | — | 11.7% | Feb 27, 2018 | An issue was discovered in Adobe Acrobat Reader 2018.009.20050 and earlier versions, 2017.011.30070 and earlier versions... |
Check if your code is affected by 2018 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now