16,510 vulnerabilities published in 2018
IBM DB2 for Linux, UNIX and Windows (includes DB2 Connect Server) 9.7, 10.1, 10.5, and 11.1 could allow a local db2 inst
RegFilter.sys in IOBit Malware Fighter 6.2 is susceptible to a stack-based buffer overflow when an attacker uses IOCTL 0
RegFilter.sys in IOBit Malware Fighter 6.2 is susceptible to a stack-based buffer overflow when an attacker uses IOCTL 0
RegFilter.sys in IOBit Malware Fighter 6.2 is susceptible to a stack-based buffer overflow when an attacker uses IOCTL 0
RegFilter.sys in IOBit Malware Fighter 6.2 is susceptible to a stack-based buffer overflow when an attacker uses IOCTL 0
Memory corruption in PDMODELProvidePDModelHFT in pdmodel.dll in pdfforge PDF Architect 6 allows remote attackers to caus
Netwide Assembler (NASM) 2.14rc15 has a heap-based buffer over-read in expand_mmac_params in asm/preproc.c for insuffici
Netwide Assembler (NASM) 2.14rc16 has a heap-based buffer over-read in expand_mmac_params in asm/preproc.c for the speci
Netwide Assembler (NASM) before 2.13.02 has a use-after-free in detoken at asm/preproc.c.
It is possible for a malware application installed on an Android device to send local push notifications with an empty m
Locally, without any permission, an arbitrary android application could delete the SSO configuration of SAP Fiori Client
The broadcast messages received by SAP Fiori Client are not protected by permissions. SAP Fiori Client version 1.11.5 in
When opening a deep link URL in SAP Fiori Client with log level set to "Debug", the client application logs the URL to t
A tampering vulnerability exists in PowerShell that could allow an attacker to execute unlogged code, aka "Microsoft Pow
An elevation of privilege vulnerability exists in the way that the Microsoft RemoteFX Virtual GPU miniport driver handle
An elevation of privilege vulnerability exists when DirectX improperly handles objects in memory, aka "DirectX Elevation
A remote code execution vulnerability exists in Microsoft Outlook software when it fails to properly handle objects in m
A remote code execution vulnerability exists in Microsoft Outlook software when it fails to properly handle objects in m
A remote code execution vulnerability exists in Microsoft Word software when it fails to properly handle objects in memo
An elevation of privilege exists in Windows COM Aggregate Marshaler, aka "Windows COM Elevation of Privilege Vulnerabili
A remote code execution vulnerability exists in the way that Microsoft Graphics Components handle objects in memory, aka
An elevation of privilege vulnerability exists when DirectX improperly handles objects in memory, aka "DirectX Elevation
An elevation of privilege vulnerability exists when DirectX improperly handles objects in memory, aka "DirectX Elevation
An elevation of privilege vulnerability exists in Windows when the Win32k component fails to properly handle objects in
A remote code execution vulnerability exists in Microsoft Word software when it fails to properly handle objects in memo
A remote code execution vulnerability exists in Microsoft Excel software when the software fails to properly handle obje
A remote code execution vulnerability exists in Microsoft Project software when it fails to properly handle objects in m
A remote code execution vulnerability exists in Microsoft Outlook software when it fails to properly handle objects in m
A remote code execution vulnerability exists in Microsoft Excel software when the software fails to properly handle obje
An elevation of privilege vulnerability exists when Windows improperly handles calls to Advanced Local Procedure Call (A
An elevation of privilege vulnerability exists when Windows improperly handles calls to Win32k.sys, aka "Windows Win32k
Heap overflow in Intel Trace Analyzer 2018 in Intel Parallel Studio XE 2018 Update 3 may allow an authenticated user to
Insufficient input validation in installer in Intel Rapid Store Technology (RST) before version 16.7 may allow an unpriv
Improper directory permissions in the installer for the Intel Media Server Studio may allow unprivileged users to potent
Improper file permissions in the installer for the Intel Ready Mode Technology may allow an unprivileged user to potenti
Nagios XI 5.5.6 allows local authenticated attackers to escalate privileges to root via Autodiscover_new.php.
In the serialization functions of StatsLogEventWrapper.java, there is a possible out-of-bounds write due to unnecessary
In Parcel.writeMapInternal of Parcel.java, there is a possible parcel serialization/deserialization mismatch due to impr
In functionality implemented in System UI, there are insufficient protections implemented around overlay windows. This c
In the AndroidManifest.xml file defining the SliceBroadcastReceiver handler for com.android.settings.slice.action.WIFI_C
In vorbis_book_decodev_set of codebook.c there is a possible out of bounds write due to missing bounds check. This could
In AudioSpecificConfig_Parse of tpdec_asc.cpp, there is a possible out-of-bounds write due to a missing bounds check. Th
In numerous functions of libFDK, there are possible out of bounds writes due to incorrect bounds checks. This could lead
In BTA_HdRegisterApp of bta_hd_api.cc, there is a possible out-of-bound write due to a missing bounds check. This could
Untrusted search path vulnerability in Baidu Browser Version 43.23.1000.500 and earlier allows an attacker to gain privi
SecureCore Standard Edition Version 2.x allows an attacker to bypass the product 's authentication to log in to a Window
GNOME Keyring through 3.28.2 allows local users to retrieve login credentials via a Secret Service API call and the D-Bu
BestXsoftware Best Free Keylogger before 6.0.0 allows local users to gain privileges via a Trojan horse "%PROGRAMFILES%\
DENX U-Boot through 2018.09-rc1 has a locally exploitable buffer overflow via a crafted kernel image because filesystem
Multiple local privilege escalation vulnerabilities have been identified in the LiquidVPN client through 1.37 for macOS.
Scan for 2018 Vulnerabilities
CyberStrike detects these CVEs across your infrastructure automatically.
Get Started