16,510 vulnerabilities published in 2018
Sophos SafeGuard Enterprise before 8.00.5, SafeGuard Easy before 7.00.3, and SafeGuard LAN Crypt before 3.95.2 are vulne
Sophos SafeGuard Enterprise before 8.00.5, SafeGuard Easy before 7.00.3, and SafeGuard LAN Crypt before 3.95.2 are vulne
Sophos SafeGuard Enterprise before 8.00.5, SafeGuard Easy before 7.00.3, and SafeGuard LAN Crypt before 3.95.2 are vulne
Sophos SafeGuard Enterprise before 8.00.5, SafeGuard Easy before 7.00.3, and SafeGuard LAN Crypt before 3.95.2 are vulne
Sophos SafeGuard Enterprise before 8.00.5, SafeGuard Easy before 7.00.3, and SafeGuard LAN Crypt before 3.95.2 are vulne
A vulnerability has been identified in IEC 61850 system configurator (All versions < V5.80), DIGSI 5 (affected as IEC 61
Adobe Flash Player versions 29.0.0.171 and earlier have a Stack-based buffer overflow vulnerability. Successful exploita
The Rust Programming Language rustdoc version Between 0.8 and 1.27.0 contains a CWE-427: Uncontrolled Search Path Elemen
An issue was discovered in cmft through 2017-09-24. The cmft::rwReadFile function in image.cpp allows remote attackers t
An issue was discovered in the HDF HDF5 1.8.20 library. There is an out-of-bounds read in the function H5VM_memcpyvv in
Installation tool IPDT (Intel Processor Diagnostic Tool) 4.1.0.24 sets permissions of installed files incorrectly, allow
Unquoted service paths in Intel Processor Diagnostic Tool (IPDT) before version 4.1.0.27 allows a local attacker to pote
Unquoted service paths in Intel Quartus Prime in versions 15.1 - 18.0 allow a local attacker to potentially execute arbi
Unquoted service paths in Intel Quartus II in versions 11.0 - 15.0 allow a local attacker to potentially execute arbitra
Unquoted service paths in Intel Quartus II Programmer and Tools in versions 11.0 - 15.0 allow a local attacker to potent
Unquoted service paths in Intel Quartus Prime Programmer and Tools in versions 15.1 - 18.0 allow a local attacker to pot
A remote code execution vulnerability exists in Visual Studio software when the software does not check the source marku
An elevation of privilege vulnerability exists in .NET Framework which could allow an attacker to elevate their privileg
A Tampering vulnerability exists when Microsoft Macro Assembler improperly validates code, aka "Microsoft Macro Assemble
A security feature bypass vulnerability exists when Skype for Business or Lync do not properly parse UNC path links shar
A remote code execution vulnerability exists in Microsoft Office software when the software fails to properly handle obj
An elevation of privilege vulnerability exists in Windows when the Windows kernel-mode driver fails to properly handle o
A remote code execution vulnerability exists when Microsoft Access fails to properly handle objects in memory, aka "Micr
An elevation of privilege vulnerability exists in the way that the Windows Kernel API enforces permissions, aka "Windows
IBM WebSphere Portal 7.0.0.x and 8.0.0.x write passwords to a trace file when tracing is enabled for the Selfcare Portle
An exploitable heap corruption exists in the PowerPoint document conversion functionality of the Antenna House Office Se
In Antenna House Office Server Document Converter version V6.1 Pro MR2 for Linux64 (6,1,2018,0312), a crafted Microsoft
In Antenna House Office Server Document Converter version V6.1 Pro MR2 for Linux64 (6,1,2018,0312), a crafted Microsoft
An Improper Privilege Management vulnerability in a shell session of Juniper Networks Junos OS allows an authenticated u
While playing HEVC content using HD DMB in Snapdragon Automobile and Snapdragon Mobile in version MSM8996AU, SD 450, SD
The svpn component of the F5 BIG-IP APM client prior to version 7.1.7 for Linux and Mac OS X runs as a privileged proces
An issue was discovered in TotalAV v4.1.7. An unprivileged user could modify or overwrite all of the product's files bec
YamlDotNet version 4.3.2 and earlier contains a Insecure Direct Object Reference vulnerability in The default behavior o
The iTrack Easy mobile application stores the account password used to authenticate to the cloud API in base64-encoding
The Zizai Tech Nut mobile app stores the account password used to authenticate to the cloud API in cleartext in the cach
On Windows endpoints, the SecureConnector agent must run under the local SYSTEM account or another administrator account
On Windows endpoints, the SecureConnector agent must run under the local SYSTEM account or another administrator account
EpubCheck 4.0.1 does not properly restrict resolving external entities when parsing XML in EPUB files during validation.
The P1735 IEEE standard describes flawed methods for encrypting electronic-design intellectual property (IP), as well as
The P1735 IEEE standard describes flawed methods for encrypting electronic-design intellectual property (IP), as well as
The P1735 IEEE standard describes flawed methods for encrypting electronic-design intellectual property (IP), as well as
The P1735 IEEE standard describes flawed methods for encrypting electronic-design intellectual property (IP), as well as
The P1735 IEEE standard describes flawed methods for encrypting electronic-design intellectual property (IP), as well as
The P1735 IEEE standard describes flawed methods for encrypting electronic-design intellectual property (IP), as well as
The P1735 IEEE standard describes flawed methods for encrypting electronic-design intellectual property (IP), as well as
A flaw was found in ansible. ansible.cfg is read from the current working directory which can be altered to make it poin
A vulnerability in Cisco Digital Network Architecture (DNA) Center could allow an authenticated, local attacker to acces
pdns before version 4.1.2 is vulnerable to a buffer overflow in dnsreplay. In the dnsreplay tool provided with PowerDNS
Vulnerability in the Solaris component of Oracle Sun Systems Products Suite (subcomponent: Availability Suite Service).
ABB Panel Builder 800 all versions has an improper input validation vulnerability which may allow an attacker to insert
Scan for 2018 Vulnerabilities
CyberStrike detects these CVEs across your infrastructure automatically.
Get Started