2018 CVE Vulnerabilities
17,817 CVEs published in 2018.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2018-25101 | LOW | 3.5 | 0.5% | Apr 22, 2024 | A vulnerability, which was classified as problematic, has been found in l2c2technologies Koha up to 20180108. This issue... |
| CVE-2018-25030 | LOW | 2.5 | 0.3% | Mar 28, 2022 | A vulnerability classified as problematic has been found in Mirmay Secure Private Browser and File Manager up to 2.5. Af... |
| CVE-2018-25022 | LOW | 3.1 | 1.5% | Dec 13, 2021 | The Onion module in toxcore before 0.2.2 doesn't restrict which packets can be onion-routed, which allows a remote attac... |
| CVE-2018-1725 | LOW | 2.3 | 0.3% | Nov 5, 2020 | IBM QRadar SIEM 7.3 and 7.4 n a multi tenant configuration could be vulnerable to information disclosure. IBM X-Force ID... |
| CVE-2018-21260 | LOW | 2.7 | 0.7% | Jun 19, 2020 | An issue was discovered in Mattermost Server before 4.8.1, 4.7.4, and 4.6.3. WebSocket events were accidentally sent dur... |
| CVE-2018-21249 | LOW | 3.7 | 0.7% | Jun 19, 2020 | An issue was discovered in Mattermost Server before 5.3.0. It mishandles timing. |
| CVE-2018-21077 | LOW | 2.4 | 0.1% | Apr 8, 2020 | An issue was discovered on Samsung mobile devices with M(6.0), N(7.x), and O(8.x) software. There is a Clipboard content... |
| CVE-2018-21074 | LOW | 3.3 | 0.1% | Apr 8, 2020 | An issue was discovered on Samsung mobile devices with M(6.x) (Exynos or Qualcomm chipsets) software. There is informati... |
| CVE-2018-21073 | LOW | 2.4 | 0.1% | Apr 8, 2020 | An issue was discovered on Samsung mobile devices with N(7.x) and O(8.0) (Galaxy S9+, Galaxy S9, Galaxy S8+, Galaxy S8, ... |
| CVE-2018-21046 | LOW | 2.4 | 0.1% | Apr 8, 2020 | An issue was discovered on Samsung mobile devices with O(8.x) software. There is clipboard Data Exposure via the Emergen... |
| CVE-2018-21043 | LOW | 3.3 | 0.1% | Apr 8, 2020 | An issue was discovered on Samsung mobile devices with O(8.x) and P(9.0) (Exynos 9810 chipsets) software. There is infor... |
| CVE-2018-1002102 | LOW | 2.6 | 0.6% | Dec 5, 2019 | Improper validation of URL redirection in the Kubernetes API server in versions prior to v1.14.0 allows an attacker-cont... |
| CVE-2018-9581 | LOW | 3.3 | 0.2% | Sep 27, 2019 | In WiFi, the RSSI value and SSID information is broadcast as part of android.net.wifi.RSSI_CHANGE and android.net.wifi.S... |
| CVE-2018-20855 | LOW | 3.3 | 0.5% | Jul 26, 2019 | An issue was discovered in the Linux kernel before 4.18.7. In create_qp_common in drivers/infiniband/hw/mlx5/qp.c, mlx5_... |
| CVE-2018-1991 | LOW | 2.7 | 1.0% | May 22, 2019 | IBM API Connect 5.0.0.0, and 5.0.8.6 could could return sensitive information that could provide critical information as... |
| CVE-2018-2005 | LOW | 3.3 | 0.3% | May 20, 2019 | IBM BigFix Platform 9.2 and 9.5 stores potentially sensitive information in process memory that could be read by a local... |
| CVE-2018-1917 | LOW | 3.5 | 1.5% | Apr 2, 2019 | IBM InfoSphere Information Server 11.3, 11.5, and 11.7 could allow an authenticated user to access JSP files and disclos... |
| CVE-2018-1626 | LOW | 3.1 | 1.2% | Apr 2, 2019 | IBM Security Privileged Identity Manager Virtual Appliance 2.2.1 does not renew a session variable after a successful au... |
| CVE-2018-17500 | LOW | 2.9 | 0.3% | Mar 21, 2019 | Envoy Passport for Android and Envoy Passport for iPhone could allow a local attacker to obtain sensitive information, c... |
| CVE-2018-17499 | LOW | 2.9 | 0.2% | Mar 21, 2019 | Envoy Passport for Android and Envoy Passport for iPhone could allow a local attacker to obtain sensitive information, c... |
| CVE-2018-17489 | LOW | 2.9 | 0.2% | Mar 21, 2019 | EasyLobby Solo could allow a local attacker to obtain sensitive information, caused by the storing of the social securit... |
| CVE-2018-17486 | LOW | 2.9 | 0.3% | Mar 21, 2019 | Lobby Track Desktop could allow a local attacker to bypass security restrictions, caused by an error in the find visitor... |
| CVE-2018-17483 | LOW | 2.9 | 0.3% | Mar 21, 2019 | Lobby Track Desktop could allow a local attacker to obtain sensitive information, caused by an error in Reports while in... |
| CVE-2018-17955 | LOW | 2.2 | 0.3% | Mar 15, 2019 | In yast2-multipath before version 4.1.1 a static temporary filename allows local attackers to overwrite files on systems... |
| CVE-2018-1902 | LOW | 3.1 | 1.5% | Mar 11, 2019 | IBM WebSphere Application Server 7.0, 8.0, 8.5, and 9.0 could allow a remote attacker to spoof connection information wh... |
Check if your code is affected by 2018 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now