2018 CVE Vulnerabilities

17,817 CVEs published in 2018.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2018-9482MEDIUM6.5In intr_data_copy_cb of btif_hd.cc, there is a possible out of bounds read due to an integer overflow. This could lead t...
CVE-2018-9481MEDIUM6.5In bta_hd_set_report_act of bta_hd_act.cc, there is a possible out-of-bounds read due to an integer overflow. This could...
CVE-2018-9480MEDIUM6.5In bta_hd_get_report_act of bta_hd_act.cc, there is a possible out-of-bounds read due to improper input validation. This...
CVE-2018-9440MEDIUM6.5In parse of M3UParser.cpp there is a possible resource exhaustion due to improper input validation. This could lead to d...
CVE-2018-9421MEDIUM5.5In writeInplace of Parcel.cpp, there is a possible information leak across processes, using Binder, due to uninitialized...
CVE-2018-9420MEDIUM5.5In BnCameraService::onTransact of CameraService.cpp, there is a possible information disclosure due to uninitialized dat...
CVE-2018-9412MEDIUM5.5In removeUnsynchronization of ID3.cpp there is a possible resource exhaustion due to improper input validation. This cou...
CVE-2018-9410MEDIUM5.5In analyzeAxes of FontUtils.cpp, there is a possible out of bounds read due to a missing bounds check. This could lead t...
CVE-2018-9371MEDIUM6.4In the Mediatek Preloader, there are out of bounds reads and writes due to an exposed interface that allows arbitrary pe...
CVE-2018-9348MEDIUM6.5In SMF_ParseMetaEvent of eas_smf.c, there is a possible integer overflow. This could lead to remote denial of service du...
CVE-2018-9346MEDIUM5.5In BnAudioPolicyService::onTransact of AudioPolicyService.cpp, there is a possible information disclosure due to uniniti...
CVE-2018-9345MEDIUM5.5In BnAudioPolicyService::onTransact of AudioPolicyService.cpp, there is a possible information disclosure due to uniniti...
CVE-2018-9340MEDIUM5.5In ResStringPool::setTo of ResourceTypes.cpp, it's possible for an attacker to control the value of mStringPoolSize to b...
CVE-2018-25104MEDIUM5.3A vulnerability was found in CoinGate Plugin up to 1.2.7 on PrestaShop. It has been rated as problematic. Affected by th...
CVE-2018-25103MEDIUM5.3There exists use-after-free vulnerabilities in lighttpd <= 1.4.50 request parsing which might read from invalid pointers...
CVE-2018-25100MEDIUM5.3The Mojolicious module before 7.66 for Perl may leak cookies in certain situations related to multiple similar cookies f...
CVE-2018-25090MEDIUM5.4An unauthenticated remote attacker can use an XSS attack due to improper neutralization of input during web page generat...
CVE-2018-25097MEDIUM6.1A vulnerability, which was classified as problematic, was found in Acumos Design Studio up to 2.0.7. Affected is an unkn...
CVE-2018-25091MEDIUM6.1urllib3 before 1.24.2 does not remove the authorization HTTP header when following a cross-origin redirect (i.e., a redi...
CVE-2018-5478MEDIUM6.1Contao 3.x before 3.5.32 allows XSS via the unsubscribe module in the frontend newsletter extension.
CVE-2018-25089MEDIUM5.3A vulnerability was found in glb Meetup Tag Extension 0.1 on MediaWiki. It has been rated as problematic. This issue aff...
CVE-2018-25086MEDIUM6.1A vulnerability was found in sea75300 FanPress CM up to 3.6.3. It has been classified as problematic. This affects the f...
CVE-2018-25085MEDIUM4.8A vulnerability classified as problematic was found in Responsive Menus 7.x-1.x-dev on Drupal. Affected by this vulnerab...
CVE-2018-17883MEDIUM6.1An issue was discovered in Open Ticket Request System (OTRS) 6.0.x before 6.0.12. An attacker could send an e-mail messa...
CVE-2018-17537MEDIUM5.4An issue was discovered in GitLab Community and Enterprise Edition before 11.1.7, 11.2.x before 11.2.4, and 11.3.x befor...

Check if your code is affected by 2018 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now