2018 CVE Vulnerabilities
17,817 CVEs published in 2018.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2018-4029 | CRITICAL | 9.8 | 2.9% | May 13, 2019 | An exploitable code execution vulnerability exists in the HTTP request-parsing function of the NT9665X Chipset firmware ... |
| CVE-2018-4023 | CRITICAL | 9.8 | 2.8% | May 13, 2019 | An exploitable code execution vulnerability exists in the XML_UploadFile Wi-Fi command of the NT9665X Chipset firmware, ... |
| CVE-2018-4018 | CRITICAL | 9.8 | 2.3% | May 13, 2019 | An exploitable firmware update vulnerability exists in the NT9665X Chipset firmware, running on Anker Roav A1 Dashcam ve... |
| CVE-2018-4014 | CRITICAL | 9.8 | 2.2% | May 13, 2019 | An exploitable code execution vulnerability exists in Wi-Fi Command 9999 of the Roav A1 Dashcam running version RoavA1SW... |
| CVE-2018-7084 | CRITICAL | 9.8 | 4.6% | May 10, 2019 | A command injection vulnerability is present that permits an unauthenticated user with access to the Aruba Instant web i... |
| CVE-2018-16988 | CRITICAL | 9.8 | 1.6% | May 2, 2019 | An issue was discovered in Open XDMoD through 7.5.0. An authentication bypass (account takeover) exists due to a weak pa... |
| CVE-2018-16530 | CRITICAL | 9.8 | 3.4% | Apr 9, 2019 | A stack-based buffer overflow in Forcepoint Email Security version 8.5 allows an attacker to craft malicious input and p... |
| CVE-2018-16529 | CRITICAL | 9.8 | 1.6% | Mar 28, 2019 | A password reset vulnerability has been discovered in Forcepoint Email Security 8.5.x. The password reset URL can be use... |
| CVE-2018-4003 | CRITICAL | 9.8 | 1.8% | Mar 21, 2019 | An exploitable heap overflow vulnerability exists in the mdnscap binary of the CUJO Smart Firewall running firmware 7003... |
| CVE-2018-3985 | CRITICAL | 9.8 | 1.9% | Mar 21, 2019 | An exploitable double free vulnerability exists in the mdnscap binary of the CUJO Smart Firewall. When parsing mDNS pack... |
| CVE-2018-4059 | CRITICAL | 9.8 | 1.9% | Mar 21, 2019 | An exploitable unsafe default configuration vulnerability exists in the TURN server function of coTURN prior to version ... |
| CVE-2018-20525 | CRITICAL | 9.1 | 21.6% | Mar 21, 2019 | Roxy Fileman 1.4.5 allows Directory Traversal in copydir.php, copyfile.php, and fileslist.php. |
| CVE-2018-19365 | CRITICAL | 9.1 | 22.0% | Mar 21, 2019 | The REST API in Wowza Streaming Engine 4.7.4.01 allows traversal of the directory structure and retrieval of a file via ... |
| CVE-2018-19276 | CRITICAL | 9.8 | 98.8% | Mar 21, 2019 | OpenMRS before 2.24.0 is affected by an Insecure Object Deserialization vulnerability that allows an unauthenticated use... |
| CVE-2018-20177 | CRITICAL | 9.8 | 7.9% | Mar 15, 2019 | rdesktop versions up to and including v1.8.3 contain an Integer Overflow that leads to a Heap-Based Buffer Overflow in t... |
| CVE-2018-17988 | CRITICAL | 9.8 | 2.0% | Mar 7, 2019 | LayerBB 1.1.1 and 1.1.3 has SQL Injection via the search.php search_query parameter. |
| CVE-2018-18815 | CRITICAL | 10 | 3.1% | Mar 7, 2019 | The REST API component of TIBCO Software Inc.'s TIBCO JasperReports Server, TIBCO JasperReports Server Community Edition... |
| CVE-2018-19725 | CRITICAL | 9.8 | 3.6% | Mar 5, 2019 | Adobe Acrobat and Reader versions 2019.010.20069 and earlier, 2017.011.30113 and earlier version, and 2015.006.30464 and... |
| CVE-2018-20033 | CRITICAL | 9.8 | 3.7% | Feb 25, 2019 | A Remote Code Execution vulnerability in lmgrd and vendor daemon components of FlexNet Publisher version 11.16.1.0 and e... |
| CVE-2018-20784 | CRITICAL | 9.8 | 4.2% | Feb 22, 2019 | In the Linux kernel before 4.20.2, kernel/sched/fair.c mishandles leaf cfs_rq's, which allows attackers to cause a denia... |
| CVE-2018-13792 | CRITICAL | 9.8 | 1.0% | Feb 10, 2019 | Multiple SQL injection vulnerabilities in the monitoring feature in the HTTP API in ABBYY FlexiCapture before 12 Release... |
| CVE-2018-3991 | CRITICAL | 10 | 34.3% | Feb 5, 2019 | An exploitable heap overflow vulnerability exists in the WkbProgramLow function of WibuKey Network server management, ve... |
| CVE-2018-3990 | CRITICAL | 9.3 | 0.6% | Feb 5, 2019 | An exploitable pool corruption vulnerability exists in the 0x8200E804 IOCTL handler functionality of WIBU-SYSTEMS WibuKe... |
| CVE-2018-8800 | CRITICAL | 9.8 | 7.1% | Feb 5, 2019 | rdesktop versions up to and including v1.8.3 contain a Heap-Based Buffer Overflow in function ui_clip_handle_data() that... |
| CVE-2018-8797 | CRITICAL | 9.8 | 7.1% | Feb 5, 2019 | rdesktop versions up to and including v1.8.3 contain a Heap-Based Buffer Overflow in function process_plane() that resul... |
Check if your code is affected by 2018 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now