16,510 vulnerabilities published in 2018
In Omron CX-Supervisor Versions 3.30 and prior, use after free vulnerabilities can be exploited when CX Supervisor parse
In Omron CX-Supervisor Versions 3.30 and prior, parsing malformed project files may cause a double free vulnerability.
In Omron CX-Supervisor Versions 3.30 and prior, processing a malformed packet by a certain executable may cause an untru
IBM Predictive Solutions Foundation (IBM Cognos Analytics 11.0) reveals sensitive information in detailed error messages
IBM WebSphere Application Server 9 installations using Form Login could allow a remote attacker to conduct spoofing atta
In Apache httpd 2.4.0 to 2.4.29, when mod_session is configured to forward its session data to CGI applications (Session
The add_job function in scheduler/ipp.c in CUPS before 2.2.6, when D-Bus support is enabled, can be crashed by remote at
NetIQ Identity Manager driver, in versions prior to 4.7, allows for an SSL handshake renegotiation which could result in
A vulnerability in the web framework of Cisco Unified Communications Manager could allow an unauthenticated, remote atta
QNAP QTS 4.2.6 build 20171026, QTS 4.3.3 build 20170727 and earlier allows remote attackers to obtain potentially sensit
A vulnerability in the Forwarding Information Base (FIB) code of Cisco IOS Software and Cisco IOS XE Software could allo
WireMock before 2.16.0 contains a vulnerability that allows a remote unauthenticated attacker to access local files beyo
A specially crafted message could cause a denial of service in IBM WebSphere MQ 9.0, 9.0.0.1, 9.0.0.2, 9.0.1, 9.0.2, 9.0
In the KGSL driver function _gpuobj_map_useraddr() in Android for MSM, Firefox OS for MSM, and QRD Android before 2017-1
In Spark before 2.7.2, a remote attacker can read unintended static files via various representations of absolute or rel
Wago 750 Series PLCs with firmware version 10 and prior include a remote attack may take advantage of an improper implem
In Qualcomm Android for MSM, Firefox OS for MSM, and QRD Android with all Android releases from CAF using the Linux kern
In Qualcomm Android for MSM, Firefox OS for MSM, and QRD Android with all Android releases from CAF using the Linux kern
Ruby before 2.2.10, 2.3.x before 2.3.7, 2.4.x before 2.4.4, 2.5.x before 2.5.1, and 2.6.0-preview1 allows an HTTP Respon
The xz_decomp function in xzlib.c in libxml2 2.9.8, if --with-lzma is used, allows remote attackers to cause a denial of
A information disclosure vulnerability in the Android framework (aosp email application). Product: Android. Versions: 6.
A denial of service vulnerability in the Android framework (package installer). Product: Android. Versions: 6.0, 6.0.1,
A information disclosure vulnerability in the Android media framework (libavc). Product: Android. Versions: 6.0, 6.0.1,
A information disclosure vulnerability in the Android media framework (libhevc). Product: Android. Versions: 6.0, 6.0.1,
A information disclosure vulnerability in the Android media framework (libhavc). Product: Android. Versions: 6.0, 6.0.1,
A information disclosure vulnerability in the Broadcom bcmdhd driver. Product: Android. Versions: Android kernel. Androi
A information disclosure vulnerability in the Upstream kernel mnh_sm driver. Product: Android. Versions: Android kernel.
An issue was discovered in the WP Security Audit Log plugin 3.1.1 for WordPress. Access to wp-content/uploads/wp-securit
Systematic SitaWare 6.4 SP2 does not validate input from other sources sufficiently. e.g., information utilizing the NVG
A flaw was found in Moodle 3.4 to 3.4.1, 3.3 to 3.3.4, 3.2 to 3.2.7, 3.1 to 3.1.10 and earlier unsupported versions. Una
An elevation of privilege vulnerability in the NVIDIA firmware processing code. Product: Android. Versions: Android kern
An information disclosure vulnerability in the Qualcomm audio driver. Product: Android. Versions: Android Kernel. Androi
An elevation of privilege vulnerability in the Qualcomm QCE driver. Product: Android. Versions: Android kernel. Android
An exploitable insufficient resource pool vulnerability exists in the session communication functionality of Allen Bradl
An issue was discovered in idreamsoft iCMS through 7.0.7. Physical path leakage exists via an invalid nickname field tha
The backend in Open-Xchange (OX) AppSuite 7.4.2 before 7.4.2-rev9 allows remote attackers to obtain sensitive informatio
IBM WebSphere MQ 7.5.x before 7.5.0.6 and 8.0.x before 8.0.0.3 allows remote authenticated users to obtain sensitive inf
Unquoted windows search path (directory/path traversal) vulnerability in Crystal Reports Server, OEM Edition (CRSE), 4.0
SCCPX module in Huawei DP300 V500R002C00, RP200 V500R002C00, V600R006C00, TE30 V100R001C10, V500R002C00, V600R006C00, TE
The Themes App Honor 8 Lite Huawei mobile phones with software of versions before Prague-L31C576B172, versions before Pr
joyplus-cms 1.6.0 allows remote attackers to obtain sensitive information via a direct request to the install/ or log/ U
A vulnerability in Junos OS SNMP MIB-II subagent daemon (mib2d) may allow a remote network based attacker to cause the m
A security feature bypass vulnerability exists when Active Directory incorrectly applies Network Isolation settings, aka
An information disclosure vulnerability exists when Windows Hyper-V on a host operating system fails to properly validat
A denial of service vulnerability exists in the way that Windows SNMP Service handles malformed SNMP traps, aka "Windows
A denial of service vulnerability exists in Remote Desktop Protocol (RDP) when an attacker connects to the target system
An information disclosure vulnerability exists in the way that the scripting engine handles objects in memory in Interne
An information disclosure vulnerability exists in the way that the scripting engine handles objects in memory in Interne
An information disclosure vulnerability exists when Microsoft Office improperly discloses the contents of its memory, ak
CyberArk Password Vault before 9.7 allows remote attackers to obtain sensitive information from process memory by replay
Scan for 2018 Vulnerabilities
CyberStrike detects these CVEs across your infrastructure automatically.
Get Started