2018 CVE Vulnerabilities

17,817 CVEs published in 2018.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2018-25129HIGH7.5SOCA Access Control System 180612 contains multiple insecure direct object reference vulnerabilities that allow attacker...
CVE-2018-25125HIGH8.7Netis ADSL Router DL4322D firmware RTK 2.1.1 contains a buffer overflow vulnerability in the embedded FTP service that a...
CVE-2018-25124HIGH8.7PacsOne Server version 6.6.2 (prior versions are likely affected) contains a directory traversal vulnerability within th...
CVE-2018-25123HIGH7.8Nagios XI versions prior to 5.5.7 contain a privilege escalation vulnerability in the MRTG graphing component. MRTG-rela...
CVE-2018-25122HIGH8.8Nagios XI versions prior to 5.4.13 contain a remote code execution vulnerability in the Component Download page. The dow...
CVE-2018-25113HIGH8.7An unauthenticated path traversal vulnerability exists in Dicoogle PACS Web Server version 2.5.0 and possibly earlier. T...
CVE-2018-25112HIGH7.5An unauthenticated remote attacker may use an uncontrolled resource consumption in the IEC 61131 program of the affected...
CVE-2018-25110HIGH7.5Marked prior to version 0.3.17 is vulnerable to a Regular Expression Denial of Service (ReDoS) attack due to catastrophi...
CVE-2018-9373HIGH8.8In TdlsexRxFrameHandle of the MTK WLAN driver, there is a possible out of bounds write due to a missing bounds check. Th...
CVE-2018-9464HIGH7.8In multiple locations, there is a possible way to read protected files due to a missing permission check. This could lea...
CVE-2018-9461HIGH7In onAttachFragment of ShareIntentActivity.java, there is a possible way for an app to read files in the messages app du...
CVE-2018-9401HIGH7.8In many locations, there is a possible way to access kernel memory in user space due to an incorrect bounds check. This ...
CVE-2018-9389HIGH7.8In ip6_append_data of ip6_output.c, there is a possible way to achieve code execution due to a heap buffer overflow. Thi...
CVE-2018-9387HIGH7.8In multiple functions of mnh-sm.c, there is a possible way to trigger a heap overflow due to an integer overflow. This c...
CVE-2018-9434HIGH7.8In multiple functions of Parcel.cpp, there is a possible way to bypass address space layout randomization. This could le...
CVE-2018-9382HIGH7.8In multiple functions of WifiServiceImpl.java, there is a possible way to activate Wi-Fi hotspot from a non-owner profil...
CVE-2018-9375HIGH7.8In multiple functions of UserDictionaryProvider.java, there is a possible way to add and delete words in the user dictio...
CVE-2018-25108HIGH7.5An unauthenticated remote attacker can cause a DoS in the controller due to uncontrolled resource consumption.
CVE-2018-25107HIGH7.5The Crypt::Random::Source package before 0.13 for Perl has a fallback to the built-in rand() function, which is not a se...
CVE-2018-9402HIGH7.8In multiple functions of gl_proc.c, there is a buffer overwrite due to a missing bounds check. This could lead to escala...
CVE-2018-9431HIGH7.8In OSUInfo of OSUInfo.java, there is a possible escalation of privilege due to improper input validation. This could lea...
CVE-2018-9426HIGH7.5In  RsaKeyPairGenerator::getNumberOfIterations of RSAKeyPairGenerator.java, an incorrect implementation could cause weak...
CVE-2018-9414HIGH7.8In gattServerSendResponseNative of com_android_bluetooth_gatt.cpp, there is a possible out of bounds stack write due to ...
CVE-2018-9413HIGH8.8In handle_notification_response of btif_rc.cc, there is a possible out of bounds write due to a missing bounds check. Th...
CVE-2018-9381HIGH7.5In gatts_process_read_by_type_req of gatt_sr.c, there is a possible information disclosure due to uninitialized data. Th...

Check if your code is affected by 2018 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now