CVE Database

Comprehensive vulnerability intelligence with advanced analytics

9.8

CVE-2018-19410

Critical KEV

PRTG Network Monitor before 18.2.40.1683 allows remote unauthenticated attackers to create users with read-write privileges (including administrator). A remote unauthenticated user can craft an HTTP request and override attributes of the 'include' directive in /public/login.htm and perform a Local File Inclusion attack, by including /api/addusers and executing it. By providing…

Published: Nov 21, 2018
Modified: Nov 07, 2025
EPSS: 91.75%
View Details
7.8

An elevation of privilege vulnerability exists when Windows improperly handles calls to Win32k.sys, aka "Windows Win32k Elevation of Privilege Vulnerability." This affects Windows Server 2008, Windows 7, Windows Server 2008 R2.

Published: Nov 14, 2018
Modified: Oct 28, 2025
Product: microsoft windows_server_2008
EPSS: 46.26%
View Details
7.4

An elevation of privilege vulnerability exists in Microsoft Exchange Server, aka "Microsoft Exchange Server Elevation of Privilege Vulnerability." This affects Microsoft Exchange Server.

Published: Nov 14, 2018
Modified: Oct 28, 2025
Product: microsoft exchange_server
EPSS: 91.50%
View Details
9.8

CVE-2018-14667

Critical KEV

The RichFaces Framework 3.X through 3.3.4 is vulnerable to Expression Language (EL) injection via the UserResource resource. A remote, unauthenticated attacker could exploit this to execute arbitrary code using a chain of java serialized objects via org.ajax4jsf.resource.UserResource$UriData.

Published: Nov 06, 2018
Modified: Nov 03, 2025
Product: redhat enterprise_linux
EPSS: 89.37%
View Details
9.8

CVE-2018-14558

Critical KEV

An issue was discovered on Tenda AC7 devices with firmware through V15.03.06.44_CN(AC7), AC9 devices with firmware through V15.03.05.19(6318)_CN(AC9), and AC10 devices with firmware through V15.03.06.23_CN(AC10). A command Injection vulnerability allows attackers to execute arbitrary OS commands via a crafted goform/setUsbUnload request. This occurs because the "formsetUsbUnload" function executes a dosystemCmd…

Published: Oct 30, 2018
Modified: Nov 07, 2025
Product: tenda ac9_firmware
EPSS: 76.77%
View Details
7.8

An elevation of privilege vulnerability exists when Windows improperly handles calls to Advanced Local Procedure Call (ALPC), aka "Windows ALPC Elevation of Privilege Vulnerability." This affects Windows 7, Windows Server 2012 R2, Windows RT 8.1, Windows Server 2008, Windows Server 2012, Windows 8.1, Windows Server 2016, Windows Server 2008 R2,…

Published: Sep 13, 2018
Modified: Oct 28, 2025
Product: microsoft windows_10_1607
EPSS: 75.48%
View Details
8.8

A remote code execution vulnerability exists when the Windows Shell does not properly validate file paths, aka "Windows Shell Remote Code Execution Vulnerability." This affects Windows 10 Servers, Windows 10.

Published: Aug 15, 2018
Modified: Oct 28, 2025
Product: microsoft windows_server_1803
EPSS: 87.93%
View Details
7.8

An elevation of privilege vulnerability exists when the DirectX Graphics Kernel (DXGKRNL) driver improperly handles objects in memory, aka "DirectX Graphics Kernel Elevation of Privilege Vulnerability." This affects Windows Server 2016, Windows 10, Windows 10 Servers. This CVE ID is unique from CVE-2018-8400, CVE-2018-8401, CVE-2018-8405.

Published: Aug 15, 2018
Modified: Oct 28, 2025
Product: microsoft windows_10_1607
EPSS: 49.99%
View Details
7.8

An elevation of privilege vulnerability exists when the DirectX Graphics Kernel (DXGKRNL) driver improperly handles objects in memory, aka "DirectX Graphics Kernel Elevation of Privilege Vulnerability." This affects Windows Server 2012 R2, Windows RT 8.1, Windows Server 2016, Windows 8.1, Windows 10, Windows 10 Servers. This CVE ID is unique…

Published: Aug 15, 2018
Modified: Oct 28, 2025
Product: microsoft windows_10_1607
EPSS: 49.99%
View Details
7.5

A remote code execution vulnerability exists in the way that the scripting engine handles objects in memory in Internet Explorer, aka "Scripting Engine Memory Corruption Vulnerability." This affects Internet Explorer 9, Internet Explorer 11, Internet Explorer 10. This CVE ID is unique from CVE-2018-8353, CVE-2018-8355, CVE-2018-8359, CVE-2018-8371, CVE-2018-8372, CVE-2018-8385, CVE-2018-8389,…

Published: Aug 15, 2018
Modified: Oct 28, 2025
Product: microsoft internet_explorer
EPSS: 82.42%
View Details
8.1

In Laravel Framework through 5.5.40 and 5.6.x through 5.6.29, remote code execution might occur as a result of an unserialize call on a potentially untrusted X-XSRF-TOKEN value. This involves the decrypt method in Illuminate/Encryption/Encrypter.php and PendingBroadcast in gadgetchains/Laravel/RCE/3/chain.php in phpggc. The attacker must know the application key, which normally would…

Published: Aug 09, 2018
Modified: Nov 07, 2025
EPSS: 84.38%
View Details
7.8

Adobe Flash Player versions 29.0.0.171 and earlier have a Stack-based buffer overflow vulnerability. Successful exploitation could lead to arbitrary code execution in the context of the current user.

Published: Jul 09, 2018
Modified: Nov 18, 2025
Product: adobe flash_player_desktop_runtime
EPSS: 48.48%
View Details
8.8

Adobe Acrobat and Reader versions 2018.011.20038 and earlier, 2017.011.30079 and earlier, and 2015.006.30417 and earlier have a Double Free vulnerability. Successful exploitation could lead to arbitrary code execution in the context of the current user.

Published: Jul 09, 2018
Modified: Oct 23, 2025
Product: adobe acrobat_dc
EPSS: 62.03%
View Details
9.8

CVE-2018-4939

Critical KEV

Adobe ColdFusion Update 5 and earlier versions, ColdFusion 11 Update 13 and earlier versions have an exploitable Deserialization of Untrusted Data vulnerability. Successful exploitation could lead to arbitrary code execution.

Published: May 19, 2018
Modified: Oct 23, 2025
Product: adobe coldfusion
EPSS: 76.96%
View Details
9.8

CVE-2018-10562

Critical KEV

An issue was discovered on Dasan GPON home routers. Command Injection can occur via the dest_host parameter in a diag_action=ping request to a GponForm/diag_Form URI. Because the router saves ping results in /tmp and transmits them to the user when the user revisits /diag.html, it's quite simple to execute commands…

Published: May 04, 2018
Modified: Nov 05, 2025
Product: dasannetworks gpon_router_firmware
EPSS: 94.03%
View Details
9.8

CVE-2018-10561

Critical KEV

An issue was discovered on Dasan GPON home routers. It is possible to bypass authentication simply by appending "?images" to any URL of the device that requires authentication, as demonstrated by the /menu.html?images/ or /GponForm/diag_FORM?images/ URI. One can then manage the device.

Published: May 04, 2018
Modified: Nov 05, 2025
Product: dasannetworks gpon_router_firmware
EPSS: 93.31%
View Details
9.8

CVE-2018-1273

Critical KEV

Spring Data Commons, versions prior to 1.13 to 1.13.10, 2.0 to 2.0.5, and older unsupported versions, contain a property binder vulnerability caused by improper neutralization of special elements. An unauthenticated remote malicious user (or attacker) can supply specially crafted request parameters against Spring Data REST backed HTTP resources or using…

Published: Apr 11, 2018
Modified: Oct 28, 2025
Product: pivotal_software spring_data_rest
EPSS: 94.29%
View Details
5.9

CVE-2018-0180

Medium KEV

Multiple vulnerabilities in the Login Enhancements (Login Block) feature of Cisco IOS Software could allow an unauthenticated, remote attacker to trigger a reload of an affected system, resulting in a denial of service (DoS) condition. These vulnerabilities affect Cisco devices that are running Cisco IOS Software Release 15.4(2)T, 15.4(3)M, or…

Published: Mar 28, 2018
Modified: Jan 14, 2026
Product: cisco ios
EPSS: 1.28%
View Details
5.9

CVE-2018-0179

Medium KEV

Multiple vulnerabilities in the Login Enhancements (Login Block) feature of Cisco IOS Software could allow an unauthenticated, remote attacker to trigger a reload of an affected system, resulting in a denial of service (DoS) condition. These vulnerabilities affect Cisco devices that are running Cisco IOS Software Release 15.4(2)T, 15.4(3)M, or…

Published: Mar 28, 2018
Modified: Jan 14, 2026
Product: cisco ios
EPSS: 1.50%
View Details
8.0

Format String vulnerability in the Link Layer Discovery Protocol (LLDP) subsystem of Cisco IOS Software, Cisco IOS XE Software, and Cisco IOS XR Software could allow an unauthenticated, adjacent attacker to cause a denial of service (DoS) condition or execute arbitrary code with elevated privileges on an affected device. Cisco…

Published: Mar 28, 2018
Modified: Jan 14, 2026
Product: cisco ios
EPSS: 2.47%
View Details
8.6

A vulnerability in the DHCP option 82 encapsulation functionality of Cisco IOS Software and Cisco IOS XE Software could allow an unauthenticated, remote attacker to cause an affected device to reload, resulting in a denial of service (DoS) condition. The vulnerability exists because the affected software performs incomplete input validation…

Published: Mar 28, 2018
Modified: Jan 14, 2026
Product: cisco ios
EPSS: 4.07%
View Details
8.6

A vulnerability in the Cisco IOS Software and Cisco IOS XE Software function that restores encapsulated option 82 information in DHCP Version 4 (DHCPv4) packets could allow an unauthenticated, remote attacker to cause an affected device to reload, resulting in a Relay Reply denial of service (DoS) condition. The vulnerability…

Published: Mar 28, 2018
Modified: Jan 14, 2026
Product: cisco ios
EPSS: 4.07%
View Details
8.6

A vulnerability in the DHCP option 82 encapsulation functionality of Cisco IOS Software and Cisco IOS XE Software could allow an unauthenticated, remote attacker to cause an affected device to reload, resulting in a denial of service (DoS) condition. The vulnerability exists because the affected software performs incomplete input validation…

Published: Mar 28, 2018
Modified: Jan 14, 2026
Product: cisco ios
EPSS: 4.66%
View Details
8.8

Multiple Buffer Overflow vulnerabilities in the Link Layer Discovery Protocol (LLDP) subsystem of Cisco IOS Software, Cisco IOS XE Software, and Cisco IOS XR Software could allow an unauthenticated, adjacent attacker to cause a denial of service (DoS) condition or execute arbitrary code with elevated privileges on an affected device.…

Published: Mar 28, 2018
Modified: Jan 14, 2026
Product: cisco ios
EPSS: 1.38%
View Details