16,510 vulnerabilities published in 2018
Vulnerability in the Sun ZFS Storage Appliance Kit (AK) component of Oracle Sun Systems Products Suite (subcomponent: Us
The Network Block Device (NBD) server in Quick Emulator (QEMU) before 2.11 is vulnerable to a denial of service issue. I
A vulnerability has been identified in Automation License Manager 5 (All versions < 5.3.4.4). An attacker with network a
On Honeywell Mobile Computers (CT60 running Android OS 7.1, CN80 running Android OS 7.1, CT40 running Android OS 7.1, CK
RSA Authentication Manager versions prior to 8.3 P3 contain a reflected cross-site scripting vulnerability in a Security
Vulnerability in the Hyperion Essbase Administration Services component of Oracle Hyperion (subcomponent: EAS Console).
A vulnerability in the detection engine of Cisco Firepower System Software could allow an unauthenticated, remote attack
The "XML Interface to Messaging, Scheduling, and Signaling" (XIMSS) protocol implementation in CommuniGate Pro (CGP) 6.2
In Samsung Gear products, Bluetooth link key is updated to the different key which is same with attacker's link key. It
Under certain conditions a malicious user can inject log files of SAP Internet Graphics Server (IGS), 7.20, 7.20EXT, 7.4
An improper input validation vulnerability in HPE Insight Control version 7.6 LR1 was found.
Huawei DP300 V500R002C00; RP200 V500R002C00; V600R006C00; TE30 V100R001C10; V600R006C00; TE50 V600R006C00; TE60 V100R001
Nextcloud Server before 11.0.7 and 12.0.5 suffers from an Authorization Bypass Through User-Controlled Key vulnerability
The Near Field Communication (NFC) module in Mate 9 Huawei mobile phones with the versions before MHA-L29B 8.0.0.366(C56
nmap version 6.49BETA6 through 7.60, up to and including SVN revision 37147 contains a Directory Traversal vulnerability
Information disclosure vulnerability in McAfee ePolicy Orchestrator (ePO) 5.3.0 through 5.3.3 and 5.9.0 through 5.9.1 al
While experiencing a broadcast storm, placing the fxp0 interface into promiscuous mode via the 'monitor traffic interfac
Vulnerability in the Sun ZFS Storage Appliance Kit (AK) component of Oracle Sun Systems Products Suite (subcomponent: AP
Escalation of privilege in Intel Saffron MemoryBase before 11.4 allows an authenticated user access to privileged inform
Escalation of privilege in Intel Saffron admin application before 11.4 allows an authenticated user to access unauthoriz
In all android releases (Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the linux kernel, in wma_ndp_c
A vulnerability in the web-based UI of Cisco Secure Access Control Server could allow an authenticated, remote attacker
Vulnerability in the Solaris component of Oracle Sun Systems Products Suite (subcomponent: Kernel). The supported versio
The SV3C HD Camera (L-SERIES V2.3.4.2103-S50-NTD-B20170508B and V2.3.4.2103-S50-NTD-B20170823B) stores the username and
A missing access check in Nextcloud Server prior to 14.0.0 could lead to continued access to password protected link sha
A Bleichenbacher type side-channel based padding oracle attack was found in the way nettle handles endian conversion of
In process_service_search_rsp of sdp_discovery.c, there is a possible out of bounds read due to a missing bounds check.
The Bluetooth subsystem in QEMU mishandles negative values for length variables, leading to memory corruption.
Lack of special casing of localhost in WPAD files in Google Chrome prior to 71.0.3578.80 allowed an attacker on the loca
Systems with microprocessors utilizing speculative execution and indirect branch prediction may allow unauthorized discl
Systems with microprocessors utilizing speculative execution and branch prediction may allow unauthorized disclosure of
Systems with microprocessors utilizing speculative execution and indirect branch prediction may allow unauthorized discl
IBM Integration Bus 9.0 and 10.0 could allow an attacker that has captured a valid session id to hijack another users se
A Use of Hard-coded Credentials issue was discovered in Smiths Medical Medfusion 4000 Wireless Syringe Infusion Pump, Ve
A local buffer overflow vulnerability in HPE System Management Homepage for Windows and Linux version prior to v7.6.1 wa
A local arbitrary command execution vulnerability in HPE System Management Homepage for Windows and Linux version prior
A local arbitrary command execution vulnerability in HPE System Management Homepage for Windows and Linux version prior
A local authentication bypass vulnerability in HPE System Management Homepage for Windows and Linux version prior to v7.
A local security misconfiguration vulnerability in HPE System Management Homepage for Windows and Linux version prior to
A local arbitrary execution of commands vulnerability in HPE System Management Homepage for Windows and Linux version pr
A local arbitrary execution of commands vulnerability in HPE System Management Homepage for Windows and Linux version pr
A local authentication bypass vulnerability in HPE System Management Homepage for Windows and Linux version prior to v7.
A vulnerability in the FTP server of the Cisco Web Security Appliance (WSA) could allow an unauthenticated, remote attac
The Microsoft Hyper-V Network Switch in 64-bit versions of Microsoft Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1,
Systems with microprocessors utilizing speculative execution may allow unauthorized disclosure of information to an atta
A man in the middle vulnerability exists in Jenkins Ansible Plugin 0.8 and older in AbstractAnsibleInvocation.java, Ansi
A man in the middle vulnerability exists in Jenkins vSphere Plugin 2.16 and older in VSphere.java that disables SSL/TLS
IBM Security QRadar SIEM 7.2 and 7.3 could allow an unauthenticated user to execute code remotely with lower level privi
An issue was discovered in Xen through 4.10.x allowing x86 HVM guest OS users (in certain configurations) to read arbitr
A spoofing vulnerability exists when the Azure IoT Device Provisioning AMQP Transport library improperly validates certi
Scan for 2018 Vulnerabilities
CyberStrike detects these CVEs across your infrastructure automatically.
Get Started