CVE-2018-0 to CVE-2018-999
81 CVEs with public proof-of-concept exploits.
- CVE-2018-01014 PoCsA vulnerability in the Secure Sockets Layer (SSL) VPN functionality of the Cisco Adaptive Security Appliance (ASA) Software could allow an…
- CVE-2018-011415 PoCsA vulnerability in the Cisco node-jose open source library before 0.11.0 could allow an unauthenticated, remote attacker to re-sign tokens…
- CVE-2018-01271 PoCA vulnerability in the web interface of Cisco RV132W ADSL2+ Wireless-N VPN Routers and Cisco RV134W VDSL2 Wireless-AC VPN Routers could…
- CVE-2018-01715 PoCsKEVA vulnerability in the Smart Install feature of Cisco IOS Software and Cisco IOS XE Software could allow an unauthenticated, remote…
- CVE-2018-02022 PoCsclamscan in ClamAV before 0.99.4 contains a vulnerability that could allow an unauthenticated, remote attacker to cause a denial of…
- CVE-2018-02081 PoCA vulnerability in the web-based management interface of the (cloud based) Cisco Registered Envelope Service could allow an authenticated,…
- CVE-2018-02393 PoCsA vulnerability in the egress packet processing functionality of the Cisco StarOS operating system for Cisco Aggregation Services Router…
- CVE-2018-029610 PoCsKEVA vulnerability in the web interface of the Cisco Adaptive Security Appliance (ASA) could allow an unauthenticated, remote attacker to…
- CVE-2018-04371 PoCCisco Umbrella Enterprise Roaming Client and Enterprise Roaming Module Privilege Escalation Vulnerability
- CVE-2018-04381 PoCCisco Umbrella Enterprise Roaming Client Privilege Escalation Vulnerability
- CVE-2018-04911 PoCA use-after-free issue was discovered in Tor 0.3.2.x before 0.3.2.10. It allows remote attackers to cause a denial of service (relay…
- CVE-2018-04922 PoCsJohnathan Nightingale beep through 1.3.4, if setuid, has a race condition that allows local privilege escalation.
- CVE-2018-04942 PoCsGNU Wget before 1.19.5 is prone to a cookie injection vulnerability in the resp_new function in http.c via a \r\n sequence in a…
- CVE-2018-07066 PoCsExposure of Private Information in QNAP Q'center Virtual Appliance version 1.7.1063 and earlier could allow authenticated users to access…
- CVE-2018-07076 PoCsCommand injection vulnerability in change password of QNAP Q'center Virtual Appliance version 1.7.1063 and earlier could allow…
- CVE-2018-07084 PoCsCommand injection vulnerability in networking of QNAP Q'center Virtual Appliance version 1.7.1063 and earlier could allow authenticated…
- CVE-2018-07094 PoCsCommand injection vulnerability in date of QNAP Q'center Virtual Appliance version 1.7.1063 and earlier could allow authenticated users to…
- CVE-2018-07104 PoCsCommand injection vulnerability in SSH of QNAP Q'center Virtual Appliance version 1.7.1063 and earlier could allow authenticated users to…
- CVE-2018-07151 PoCCross-site scripting vulnerability in QNAP Photo Station versions 5.7.0 and earlier could allow remote attackers to inject Javascript code…
- CVE-2018-07432 PoCsWindows Subsystem for Linux in Windows 10 version 1703, Windows 10 version 1709, and Windows Server, version 1709 allows an elevation of…
- CVE-2018-07441 PoCThe Windows kernel in Windows 8.1 and RT 8.1, Windows Server 2012 and R2, Windows 10 Gold, 1511, 1607, 1703 and 1709, Windows Server 2016…
- CVE-2018-07451 PoCThe Windows kernel in Windows 10 version 1703. Windows 10 version 1709, and Windows Server, version 1709 allows an information disclosure…
- CVE-2018-07461 PoCThe Windows kernel in Windows 8.1 and RT 8.1, Windows Server 2012 and R2, Windows 10 Gold, 1511, 1607, 1703 and 1709, Windows Server 2016…
- CVE-2018-07482 PoCsThe Windows kernel in Windows 7 SP1, Windows 8.1 and RT 8.1, Windows Server 2008 SP2 and R2 SP1, Windows Server 2012 and R2, Windows 10…
- CVE-2018-07492 PoCsThe Microsoft Server Message Block (SMB) Server in Windows 7 SP1, Windows 8.1 and RT 8.1, Windows Server 2008 SP2 and R2 SP1, Windows…
- CVE-2018-07511 PoCThe Windows Kernel API in Windows 8.1 and RT 8.1, Windows Server 2012 and R2, Windows 10 Gold, 1511, 1607, 1703 and 1709, Windows Server…
- CVE-2018-07521 PoCThe Windows Kernel API in Windows 8.1 and RT 8.1, Windows Server 2012 and R2, Windows 10 Gold, 1511, 1607, 1703 and 1709, Windows Server…
- CVE-2018-07581 PoCMicrosoft Edge in Windows 10 Gold, 1511, 1607, 1703, 1709, and Windows Server 2016 allows an attacker to execute arbitrary code in the…
- CVE-2018-07671 PoCMicrosoft Edge in Microsoft Windows 10 1511, 1607, 1703, 1709, and Windows Server 2016 allows an attacker to obtain information to further…
- CVE-2018-07691 PoCMicrosoft Edge in Windows 10 Gold, 1511, 1607, 1703, 1709, and Windows Server 2016 allows an attacker to execute arbitrary code in the…
- CVE-2018-07701 PoCMicrosoft Edge in Windows 10 Gold, 1511, 1607, 1703, 1709, and Windows Server 2016 allows an attacker to execute arbitrary code in the…
- CVE-2018-07741 PoCMicrosoft Edge in Windows 10 1709 allows an attacker to execute arbitrary code in the context of the current user, due to how the…
- CVE-2018-07751 PoCMicrosoft Edge in Windows 10 1709 allows an attacker to execute arbitrary code in the context of the current user, due to how the…
- CVE-2018-07761 PoCMicrosoft Edge in Windows 10 Gold, 1511, 1607, 1703, 1709, and Windows Server 2016 allows an attacker to execute arbitrary code in the…
- CVE-2018-07771 PoCMicrosoft Edge in Windows 10 Gold, 1511, 1607, 1703, 1709, and Windows Server 2016 allows an attacker to execute arbitrary code in the…
- CVE-2018-07801 PoCMicrosoft Edge in Microsoft Windows 10 Gold, 1511, 1607, 1703, 1709, and Windows Server 2016 allows an attacker to obtain information to…
- CVE-2018-07981 PoCKEVEquation Editor in Microsoft Office 2007, Microsoft Office 2010, Microsoft Office 2013, and Microsoft Office 2016 allows a remote code…
- CVE-2018-08026 PoCsKEVEquation Editor in Microsoft Office 2007, Microsoft Office 2010, Microsoft Office 2013, and Microsoft Office 2016 allow a remote code…
- CVE-2018-08211 PoCAppContainer in Windows 10 Gold, 1511, 1607, 1703 and 1709, Windows Server 2016 and Windows Server, version 1709 allows an elevation of…
- CVE-2018-08221 PoCNTFS in Windows 10 Gold, 1511, 1607, 1703 and 1709, Windows Server 2016 and Windows Server, version 1709 allows an elevation of privilege…
- CVE-2018-08231 PoCThe Named Pipe File System in Windows 10 version 1709 and Windows Server, version 1709 allows an elevation of privilege vulnerability due…
- CVE-2018-08243 PoCsKEVA remote code execution vulnerability exists in "Microsoft COM for Windows" when it fails to properly handle serialized objects, aka…
- CVE-2018-08261 PoCWindows Storage Services in Windows 10 versions 1511, 1607, 1703 and 1709, Windows Server 2016 and Windows Server, version 1709 allows an…
- CVE-2018-08321 PoCThe Windows kernel in Windows 8.1 and RT 8.1, Windows Server 2012 R2, Windows 10 Gold, 1511, 1607, 1703 and 1709, Windows Server 2016 and…
- CVE-2018-08334 PoCsThe Microsoft Server Message Block 2.0 and 3.0 (SMBv2/SMBv3) client in Windows 8.1 and RT 8.1 and Windows Server 2012 R2 allows a denial…
- CVE-2018-08342 PoCsMicrosoft Edge and ChakraCore in Microsoft Windows 10 Gold, 1511, 1607, 1703, 1709, and Windows Server 2016 allows remote code execution,…
- CVE-2018-08351 PoCMicrosoft Edge and ChakraCore in Microsoft Windows 10 Gold, 1511, 1607, 1703, 1709, and Windows Server 2016 allows remote code execution,…
- CVE-2018-08371 PoCMicrosoft Edge and ChakraCore in Microsoft Windows 10 Gold, 1511, 1607, 1703, 1709, and Windows Server 2016 allows remote code execution,…
- CVE-2018-08381 PoCMicrosoft Edge and ChakraCore in Microsoft Windows 10 Gold, 1511, 1607, 1703, 1709, and Windows Server 2016 allows remote code execution,…
- CVE-2018-08401 PoCInternet Explorer in Microsoft Windows 7 SP1, Windows Server 2008 R2 SP1, Windows 8.1 and Windows RT 8.1, Windows Server 2012 and R2, and…
- CVE-2018-08601 PoCMicrosoft Edge and ChakraCore in Microsoft Windows 10 Gold, 1511, 1607, 1703, 1709, and Windows Server 2016 allows remote code execution,…
- CVE-2018-08661 PoCInternet Explorer in Microsoft Windows 7 SP1, Windows Server 2008 and R2 SP1, Windows 8.1 and Windows RT 8.1, Windows Server 2012 and R2,…
- CVE-2018-08771 PoCThe Desktop Bridge Virtual File System (VFS) in Windows 10 1607, 1703, and 1709, Windows Server 2016 and Windows Server, version 1709…
- CVE-2018-08781 PoCWindows Remote Assistance in Microsoft Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1 and RT 8.1, Windows Server 2012 and…
- CVE-2018-08801 PoCThe Desktop Bridge in Windows 10 1607, 1703, and 1709, Windows Server 2016 and Windows Server, version 1709 allows an elevation of…
- CVE-2018-08821 PoCThe Desktop Bridge in Windows 10 1607, 1703, and 1709, Windows Server 2016 and Windows Server, version 1709 allows an elevation of…
- CVE-2018-08862 PoCsThe Credential Security Support Provider protocol (CredSSP) in Microsoft Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1…
- CVE-2018-08911 PoCChakraCore, and Internet Explorer in Microsoft Windows 7 SP1, Windows Server 2008 and R2 SP1, Windows 8.1 and Windows RT 8.1, Windows…
- CVE-2018-08941 PoCThe Windows kernel in Microsoft Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1 and RT 8.1, Windows Server 2012 and R2,…
- CVE-2018-08951 PoCThe Windows kernel in Microsoft Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1 and RT 8.1, Windows Server 2012 and R2,…
- CVE-2018-08971 PoCThe Windows kernel in Microsoft Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1 and RT 8.1, Windows Server 2012 and R2,…
- CVE-2018-09011 PoCThe Windows kernel in Microsoft Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1 and RT 8.1, Windows Server 2012 and R2,…
- CVE-2018-09331 PoCChakraCore and Microsoft Windows 10 Gold, 1511, 1607, 1703, 1709, and Windows Server 2016 allows remote code execution, due to how the…
- CVE-2018-09342 PoCsChakraCore and Microsoft Windows 10 Gold, 1511, 1607, 1703, 1709, and Windows Server 2016 allows remote code execution, due to how the…
- CVE-2018-09351 PoCInternet Explorer in Microsoft Windows 7 SP1, Windows Server 2008 and R2 SP1, Windows 8.1 and Windows RT 8.1, Windows Server 2012 and R2,…
- CVE-2018-09461 PoCA remote code execution vulnerability exists in the way that the scripting engine handles objects in memory in Microsoft Edge, aka…
- CVE-2018-09522 PoCsAn Elevation of Privilege vulnerability exists when Diagnostics Hub Standard Collector allows file creation in arbitrary locations, aka…
- CVE-2018-09531 PoCA remote code execution vulnerability exists in the way that the scripting engine handles objects in memory in Microsoft Edge, aka…
- CVE-2018-09591 PoCA remote code execution vulnerability exists when Windows Hyper-V on a host server fails to properly validate input from an authenticated…
- CVE-2018-09661 PoCA security feature bypass exists when Device Guard incorrectly validates an untrusted file, aka "Device Guard Security Feature Bypass…
- CVE-2018-09681 PoCAn information disclosure vulnerability exists in the Windows kernel that could allow an attacker to retrieve information that could lead…
- CVE-2018-09691 PoCAn information disclosure vulnerability exists in the Windows kernel that could allow an attacker to retrieve information that could lead…
- CVE-2018-09701 PoCAn information disclosure vulnerability exists in the Windows kernel that could allow an attacker to retrieve information that could lead…
- CVE-2018-09711 PoCAn information disclosure vulnerability exists in the Windows kernel that could allow an attacker to retrieve information that could lead…
- CVE-2018-09721 PoCAn information disclosure vulnerability exists in the Windows kernel that could allow an attacker to retrieve information that could lead…
- CVE-2018-09731 PoCAn information disclosure vulnerability exists in the Windows kernel that could allow an attacker to retrieve information that could lead…
- CVE-2018-09741 PoCAn information disclosure vulnerability exists in the Windows kernel that could allow an attacker to retrieve information that could lead…
- CVE-2018-09751 PoCAn information disclosure vulnerability exists in the Windows kernel that could allow an attacker to retrieve information that could lead…
- CVE-2018-09801 PoCA remote code execution vulnerability exists in the way that the Chakra scripting engine handles objects in memory in Microsoft Edge, aka…
- CVE-2018-09821 PoCAn elevation of privilege vulnerability exists in the way that the Windows Kernel API enforces permissions, aka "Windows Elevation of…
- CVE-2018-09861 PoCA remote code execution vulnerability exists when the Microsoft Malware Protection Engine does not properly scan a specially crafted file,…