16,510 vulnerabilities published in 2018
Artifex Mupdf version 1.12.0 contains a Use After Free vulnerability in fz_keep_key_storable that can result in DOS / Po
The Windows installer that the Apache CouchDB team provides was vulnerable to local privilege escalation. All files in t
In libmediadrm, there is an out-of-bounds write due to improper input validation. This could lead to local elevation of
In the KeyStore service, there is a permissions bypass that allows access to protected resources. This could lead to loc
A elevation of privilege vulnerability in the Upstream kernel easel. Product: Android. Versions: Android kernel. ID: A-6
A elevation of privilege vulnerability in the Upstream kernel audio driver. Product: Android. Versions: Android kernel.
In the Pixel 2 bootloader, there is a missing permission check which bypasses carrier bootloader lock. This could lead t
The futex_requeue function in kernel/futex.c in the Linux kernel before 4.14.15 might allow attackers to cause a denial
A security misconfiguration vulnerability exists in Schneider Electric's IGSS SCADA Software versions 12 and prior. Secu
IBM iNotes 8.5 and 9.0 SUService can be misguided into running malicious code from a DLL masquerading as a windows DLL i
IBM Notes and Domino NSD 8.5 and 9.0 could allow an authenticated local user without administrative privileges to gain S
systemd-tmpfiles in systemd through 237 mishandles symlinks present in non-terminal path components, which allows local
The Windows kernel in Windows 7 SP1, Windows 8.1 and RT 8.1, Windows Server 2008 SP2 and R2 SP1, Windows Server 2012 and
The Windows kernel in Windows 10 Gold, 1511, 1607, 1703 and 1709, Windows Server 2016 and Windows Server, version 1709 a
The Windows kernel in Windows 7 SP1, Windows 8.1 and RT 8.1, Windows Server 2008 SP2 and R2 SP1, Windows Server 2012 and
Windows 10 version 1607 and Windows Server 2016 allow an elevation of privilege vulnerability due to how the MultiPoint
The Windows kernel in Windows 10 versions 1607, 1703 and 1709, Windows Server 2016 and Windows Server, version 1709 allo
The Windows Common Log File System (CLFS) driver in Windows 7 SP1, Windows 8.1 and RT 8.1, Windows Server 2008 SP2 and R
The Windows Common Log File System (CLFS) driver in Windows 7 SP1, Windows 8.1 and RT 8.1, Windows Server 2008 SP2 and R
An access restriction bypass vulnerability in HPE Aruba ClearPass Policy Manager version 6.6.x was found.
A Disclosure of Sensitive Information vulnerability in HPE SiteScope version v11.2x, v11.3x was found.
Untrusted search path vulnerability in "FLET'S Azukeru Backup Tool" version 1.5.2.6 and earlier allows an attacker to ga
Untrusted search path vulnerability in FLET'S v4 / v6 address selection tool allows an attacker to gain privileges via a
In the coff_pointerize_aux function in coffgen.c in the Binary File Descriptor (BFD) library (aka libbfd), as distribute
IBM Notes Diagnostics (IBM Client Application Access and IBM Notes) could allow a local user to execute commands on the
IBM Notes Diagnostics (IBM Client Application Access and IBM Notes) could allow a local user to execute commands on the
IBM Notes Diagnostics (IBM Client Application Access and IBM Notes) could allow a local user to execute commands on the
The project import functionality in SoapUI 5.3.0 allows remote attackers to execute arbitrary Java code via a crafted re
Unisys Stealth 3.3 Windows endpoints before 3.3.016.1 allow local users to gain access to Stealth-enabled devices by lev
The ParseDsdiffHeaderConfig function of the cli/dsdiff.c file of WavPack 5.1.0 allows a remote attacker to cause a denia
The ParseCaffHeaderConfig function of the cli/caff.c file of WavPack 5.1.0 allows a remote attacker to cause a denial-of
This vulnerability allows local attackers to escalate privileges on vulnerable installations of Joyent SmartOS release-2
This vulnerability allows local attackers to escalate privileges on vulnerable installations of ABB MicroSCADA 9.3 with
An issue was discovered in an npm 5.7.0 2018-02-21 pre-release (marked as "next: 5.7.0" and therefore automatically inst
util/virlog.c in libvirt does not properly determine the hostname on LXC container startup, which allows local guest OS
In all Qualcomm products with Android releases from CAF using the Linux kernel, due to lack of bounds checking on the va
All versions of OnCommand API Services prior to 2.1 and NetApp Service Level Manager prior to 1.0RC4 log a privileged da
In all Qualcomm products with Android releases from CAF using the Linux kernel, when an access point sends a challenge t
In all Qualcomm products with Android releases from CAF using the Linux kernel, in a KGSL IOCTL handler, a Use After Fre
In all Qualcomm products with Android releases from CAF using the Linux kernel, while processing an encrypted authentica
In all Qualcomm products with Android releases from CAF using the Linux kernel, in the function wma_roam_synch_event_han
In all Qualcomm products with Android releases from CAF using the Linux kernel, in wma_unified_link_radio_stats_event_ha
In all Qualcomm products with Android releases from CAF using the Linux kernel, the num_failure_info value from firmware
In all Qualcomm products with Android releases from CAF using the Linux kernel, multiple values received from firmware a
In all Qualcomm products with Android releases from CAF using the Linux kernel, the IL client may free a buffer OMX Vide
KingView 7.5SP1 has an integer overflow during stgopenstorage API read operations.
The blkcg_init_queue function in block/blk-cgroup.c in the Linux kernel before 4.11 allows local users to cause a denial
An issue was discovered in PureVPN through 5.19.4.0 on Windows. The client installation grants the Everyone group Full C
IBM Security Guardium Big Data Intelligence (SonarG) 3.1 stores user credentials in plain in clear text which can be rea
There is a heap-based buffer overflow in the LoadPCX function of in_pcx.cpp in sam2p 0.49.4. A Crafted input will lead t
Scan for 2018 Vulnerabilities
CyberStrike detects these CVEs across your infrastructure automatically.
Get Started