2018 CVE Vulnerabilities
17,817 CVEs published in 2018.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2018-0514 | — | — | 2.3% | Feb 8, 2018 | MP Form Mail CGI eCommerce Edition Ver 2.0.13 and earlier allows remote attackers to execute arbitrary OS commands via u... |
| CVE-2018-0513 | — | — | 0.8% | Feb 8, 2018 | Cross-site scripting vulnerability in MTS Simple Booking C, MTS Simple Booking Business version 1.28.0 and earlier allow... |
| CVE-2018-0512 | — | — | 0.7% | Feb 8, 2018 | Devices with IP address setting tool "MagicalFinder" provided by I-O DATA DEVICE, INC. allow authenticated attackers to ... |
| CVE-2018-6844 | — | — | 0.6% | Feb 8, 2018 | MyBB 1.8.14 has XSS via the Title or Description field on the Edit Forum screen. |
| CVE-2018-6836 | — | — | 2.8% | Feb 8, 2018 | The netmonrec_comment_destroy function in wiretap/netmon.c in Wireshark through 2.4.4 performs a free operation on an un... |
| CVE-2018-6835 | — | — | 2.3% | Feb 8, 2018 | node/hooks/express/apicalls.js in Etherpad Lite before v1.6.3 mishandles JSONP, which allows remote attackers to bypass ... |
| CVE-2018-6834 | — | — | 0.9% | Feb 8, 2018 | static/js/pad_utils.js in Etherpad Lite before v1.6.3 has XSS via window.location.href. |
| CVE-2018-0140 | MEDIUM | 6.5 | 1.6% | Feb 8, 2018 | A vulnerability in the spam quarantine of Cisco Email Security Appliance and Cisco Content Security Management Appliance... |
| CVE-2018-0138 | MEDIUM | 5.3 | 1.2% | Feb 8, 2018 | A vulnerability in the detection engine of Cisco Firepower System Software could allow an unauthenticated, remote attack... |
| CVE-2018-0137 | — | — | 1.6% | Feb 8, 2018 | A vulnerability in the TCP throttling process of Cisco Prime Network could allow an unauthenticated, remote attacker to ... |
| CVE-2018-0135 | — | — | 1.3% | Feb 8, 2018 | A vulnerability in Cisco Unified Communications Manager could allow an authenticated, remote attacker to access sensitiv... |
| CVE-2018-0134 | MEDIUM | 5.3 | 1.4% | Feb 8, 2018 | A vulnerability in the RADIUS authentication module of Cisco Policy Suite could allow an unauthenticated, remote attacke... |
| CVE-2018-0132 | — | — | 2.3% | Feb 8, 2018 | A vulnerability in the forwarding information base (FIB) code of Cisco IOS XR Software could allow an unauthenticated, r... |
| CVE-2018-0129 | — | — | 0.9% | Feb 8, 2018 | A vulnerability in the web-based management interface of Cisco Data Center Analytics Framework could allow an unauthenti... |
| CVE-2018-0128 | — | — | 0.9% | Feb 8, 2018 | A vulnerability in the web-based management interface of Cisco Data Center Analytics Framework could allow an unauthenti... |
| CVE-2018-0127 | CRITICAL | 9.8 | 77.8% | Feb 8, 2018 | A vulnerability in the web interface of Cisco RV132W ADSL2+ Wireless-N VPN Routers and Cisco RV134W VDSL2 Wireless-AC VP... |
| CVE-2018-0125 | CRITICAL | 9.8 | 54.8% | Feb 8, 2018 | A vulnerability in the web interface of the Cisco RV132W ADSL2+ Wireless-N VPN and RV134W VDSL2 Wireless-AC VPN Routers ... |
| CVE-2018-0123 | — | — | 0.4% | Feb 8, 2018 | A Path Traversal vulnerability in the diagnostic shell for Cisco IOS and IOS XE Software could allow an authenticated, l... |
| CVE-2018-0122 | MEDIUM | 4.4 | 0.4% | Feb 8, 2018 | A vulnerability in the CLI of the Cisco StarOS operating system for Cisco ASR 5000 Series Aggregation Services Routers c... |
| CVE-2018-0120 | — | — | 1.4% | Feb 8, 2018 | A vulnerability in the web framework of Cisco Unified Communications Manager could allow an authenticated, remote attack... |
| CVE-2018-0119 | — | — | 1.0% | Feb 8, 2018 | A vulnerability in certain authentication controls in the account services of Cisco Spark could allow an authenticated, ... |
| CVE-2018-0117 | — | — | 1.8% | Feb 8, 2018 | A vulnerability in the ingress packet processing functionality of the Cisco Virtualized Packet Core-Distributed Instance... |
| CVE-2018-0116 | — | — | 1.1% | Feb 8, 2018 | A vulnerability in the RADIUS authentication module of Cisco Policy Suite could allow an unauthenticated, remote attacke... |
| CVE-2018-0113 | — | — | 2.3% | Feb 8, 2018 | A vulnerability in an operations script of Cisco UCS Central could allow an authenticated, remote attacker to execute ar... |
| CVE-2018-6829 | — | — | 1.8% | Feb 7, 2018 | cipher/elgamal.c in Libgcrypt through 1.8.2, when used to encrypt messages directly, improperly encodes plaintexts, whic... |
Check if your code is affected by 2018 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now