2018 CVE Vulnerabilities
17,817 CVEs published in 2018.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2018-11767 | — | — | 3.7% | Mar 21, 2019 | In Apache Hadoop 2.9.0 to 2.9.1, 2.8.3 to 2.8.4, 2.7.5 to 2.7.6, KMS blocking users or granting access to users incorrec... |
| CVE-2018-11747 | — | — | 0.7% | Mar 21, 2019 | Previously, Puppet Discovery was shipped with a default generated TLS certificate in the nginx container. In version 1.4... |
| CVE-2018-10093 | — | — | 68.7% | Mar 21, 2019 | AudioCodes IP phone 420HD devices using firmware version 2.2.12.126 allow Remote Code Execution. |
| CVE-2018-10091 | — | — | 0.8% | Mar 21, 2019 | AudioCodes IP phone 420HD devices using firmware version 2.2.12.126 allow XSS. |
| CVE-2018-0265 | — | — | — | Mar 21, 2019 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Fu... |
| CVE-2018-0246 | — | — | — | Mar 21, 2019 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Fu... |
| CVE-2018-0236 | — | — | — | Mar 21, 2019 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Fu... |
| CVE-2018-0191 | — | — | — | Mar 21, 2019 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Fu... |
| CVE-2018-0153 | — | — | — | Mar 21, 2019 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Fu... |
| CVE-2018-0143 | — | — | — | Mar 21, 2019 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Fu... |
| CVE-2018-15509 | — | — | 1.6% | Mar 18, 2019 | Five9 Agent Desktop Plus 10.0.70 has Incorrect Access Control (issue 2 of 2). |
| CVE-2018-20806 | — | — | 1.0% | Mar 17, 2019 | Phamm (aka PHP LDAP Virtual Hosting Manager) 0.6.8 allows XSS via the login page (the /public/main.php action parameter)... |
| CVE-2018-18205 | — | — | 2.6% | Mar 15, 2019 | Topvision CC8800 CMTS C-E devices allow remote attackers to obtain sensitive information via a direct request for /WebCo... |
| CVE-2018-17882 | — | — | 1.3% | Mar 15, 2019 | An Integer overflow vulnerability exists in the batchTransfer function of a smart contract implementation for CryptoBots... |
| CVE-2018-20182 | — | — | 8.2% | Mar 15, 2019 | rdesktop versions up to and including v1.8.3 contain a Buffer Overflow over the global variables in the function seamles... |
| CVE-2018-20181 | — | — | 8.2% | Mar 15, 2019 | rdesktop versions up to and including v1.8.3 contain an Integer Underflow that leads to a Heap-Based Buffer Overflow in ... |
| CVE-2018-20180 | — | — | 8.2% | Mar 15, 2019 | rdesktop versions up to and including v1.8.3 contain an Integer Underflow that leads to a Heap-Based Buffer Overflow in ... |
| CVE-2018-20179 | — | — | 6.8% | Mar 15, 2019 | rdesktop versions up to and including v1.8.3 contain an Integer Underflow that leads to a Heap-Based Buffer Overflow in ... |
| CVE-2018-20178 | — | — | 4.3% | Mar 15, 2019 | rdesktop versions up to and including v1.8.3 contain an Out-Of-Bounds Read in the function process_demand_active() that ... |
| CVE-2018-20176 | — | — | 3.6% | Mar 15, 2019 | rdesktop versions up to and including v1.8.3 contain several Out-Of- Bounds Reads in the file secure.c that result in a ... |
| CVE-2018-20175 | — | — | 4.3% | Mar 15, 2019 | rdesktop versions up to and including v1.8.3 contains several Integer Signedness errors that lead to Out-Of-Bounds Reads... |
| CVE-2018-20174 | — | — | 3.5% | Mar 15, 2019 | rdesktop versions up to and including v1.8.3 contain an Out-Of-Bounds Read in the function ui_clip_handle_data() that re... |
| CVE-2018-19394 | — | — | 0.7% | Mar 15, 2019 | Cobham Satcom Sailor 800 and 900 devices contained persistent XSS, which required administrative access to exploit. The ... |
| CVE-2018-19393 | — | — | 1.5% | Mar 15, 2019 | Cobham Satcom Sailor 800 and 900 devices contained a vulnerability that allowed for arbitrary writing of content to the ... |
| CVE-2018-19392 | — | — | 1.4% | Mar 15, 2019 | Cobham Satcom Sailor 250 and 500 devices before 1.25 contained an unauthenticated password reset vulnerability. This cou... |
Check if your code is affected by 2018 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now