|
Critical
|
1 Jul 2018 |
26 Jan 2026 |
CPAI-2025-2374
|
|
CVE-2018-0296 CVE-2025-20362
|
Cisco Multiple Products Authentication Bypass (CVE-2018-0296; CVE-2025-20362)
|
|
High
|
31 Dec 2018 |
20 Jan 2026 |
CPAI-2019-0017
|
|
CVE-2018-4233
|
Apple WebKit Memory Corruption (CVE-2018-4233)
|
|
High
|
7 Oct 2018 |
20 Jan 2026 |
CPAI-2018-1009
|
|
CVE-2018-16076
|
Google PDFium Out-of-bounds read (CVE-2018-16076)
|
|
High
|
30 Jul 2018 |
20 Jan 2026 |
CPAI-2018-0768
|
Project zero
|
CVE-2018-4222
|
Apple WebKit Out Of Bounds Read (CVE-2018-4222)
|
|
High
|
25 Jul 2018 |
20 Jan 2026 |
CPAI-2018-0767
|
Project zero
|
CVE-2018-4218
|
Apple WebKit Use-after-free (CVE-2018-4218)
|
|
Critical
|
19 Jun 2018 |
1 Jan 2026 |
CPAI-2018-0558
|
|
CVE-2018-10658 CVE-2018-10659 CVE-2018-10660 CVE-2018-10661 CVE-2018-10662 CVE-2018-10663 CVE-2018-10664
|
VDOO Axis Camera Authentication Bypass (CVE-2018-10658; CVE-2018-10659; CVE-2018-10660; CVE-2018-10661; CVE-2018-10662; CVE-2018-10663; CVE-2018-10664)
|
|
High
|
10 Oct 2018 |
25 Dec 2025 |
CPAI-2018-1025
|
Project zero
|
CVE-2018-16083
|
WebRTC FEC Out Of Bounds Read (CVE-2018-16083)
|
|
High
|
10 Oct 2018 |
25 Dec 2025 |
CPAI-2018-1024
|
Project zero
|
CVE-2018-16071
|
WebRTC Use After Free Code Execution (CVE-2018-16071)
|
|
High
|
9 Jul 2018 |
25 Dec 2025 |
CPAI-2018-0697
|
|
CVE-2018-11311
|
mySCADA myPRO 7 Authentication Bypass (CVE-2018-11311)
|
|
High
|
21 Jun 2018 |
25 Dec 2025 |
CPAI-2018-0552
|
|
CVE-2018-8235
|
Multiple Web Browsers Security Feature Bypass Information Disclosure (CVE-2018-8235)
|
|
Critical
|
25 Jan 2018 |
25 Dec 2025 |
CPAI-2018-0043
|
|
CVE-2018-1000006
|
Electron Protocol Handler Remote Code Execution (CVE-2018-1000006)
|
|
Critical
|
29 May 2018 |
14 Dec 2025 |
CPAI-2018-0496
|
|
CVE-2016-20017
|
D-Link DSL-2750B Command Injection (CVE-2016-20017)
|
|
Critical
|
3 Oct 2018 |
11 Dec 2025 |
CPAI-2018-0988
|
|
CVE-2015-2051 CVE-2019-10891 CVE-2022-37056 CVE-2024-33112
|
D-Link Multiple Products Remote Code Execution (CVE-2015-2051; CVE-2019-10891; CVE-2022-37056; CVE-2024-33112)
|
|
Critical
|
12 Apr 2018 |
4 Dec 2025 |
CPAI-2018-3183
|
|
CVE-2018-1270 CVE-2018-1275
|
VMware Spring Framework Remote Code Execution (CVE-2018-1270; CVE-2018-1275)
|
|
Critical
|
29 Mar 2018 |
3 Dec 2025 |
CPAI-2018-0192
|
|
CVE-2018-7600
|
Drupal Core Remote Code Execution (CVE-2018-7600)
|
|
High
|
17 Dec 2018 |
16 Oct 2025 |
CPAI-2025-2711
|
|
|
Magellan SQLite SQL Injection
|
|
High
|
12 Jul 2018 |
8 Oct 2025 |
CPAI-2018-3004
|
Project zero
|
CVE-2018-8145
|
Microsoft Multiple Products Buffer Overflow (CVE-2018-8145)
|
|
Critical
|
15 Feb 2018 |
5 Oct 2025 |
CPAI-2017-1991
|
|
CVE-2017-1000353
|
Jenkins CI Unauthenticated Remote Code Execution (CVE-2017-1000353)
|
|
Critical
|
15 Feb 2018 |
5 Oct 2025 |
CPAI-2017-1993
|
|
CVE-2017-1000353
|
Jenkins CI Unauthenticated Remote Code Execution (CVE-2017-1000353)
|
|
Critical
|
3 Jul 2018 |
17 Sep 2025 |
CPAI-2023-2287
|
|
CVE-2013-6720 CVE-2018-12809 CVE-2019-25065 CVE-2020-15320 CVE-2020-26728 CVE-2020-8958 CVE-2022-2487 CVE-2022-30105 CVE-2022-43973 CVE-2022-45699 CVE-2023-2573 CVE-2023-2574 CVE-2023-47565
|
Command Injection Over HTTP Payload (CVE-2013-6720; CVE-2018-12809; CVE-2019-25065; CVE-2020-15320; CVE-2020-26728; CVE-2020-8958; CVE-2022-2487; CVE-2022-30105; CVE-2022-43973; CVE-2022-45699; CVE-2023-2573; CVE-2023-2574; CVE-2023-47565)
|
|
Critical
|
3 Jul 2018 |
27 Aug 2025 |
CPAI-2004-0240
|
|
CVE-2004-0899 CVE-2004-0900
|
Microsoft Windows NT Denial of Service (CVE-2004-0899; CVE-2004-0900)
|
|
Critical
|
27 Sep 2018 |
14 Aug 2025 |
CPAI-2018-0983
|
|
CVE-2018-9866
|
SonicWall Global Management System Remote Code Execution (CVE-2018-9866)
|
|
High
|
23 Aug 2018 |
14 Aug 2025 |
CPAI-2018-0849
|
|
CVE-2018-11776
|
Apache Struts Remote Code Execution (CVE-2018-11776)
|
|
Critical
|
24 Jul 2018 |
14 Aug 2025 |
CPAI-2018-0769
|
|
CVE-2018-2894
|
Oracle WebLogic WLS Server Component Arbitrary File Upload (CVE-2018-2894)
|
|
High
|
25 Jun 2018 |
14 Aug 2025 |
CPAI-2018-0553
|
|
CVE-2018-12254
|
Joomla Ek Rishta Component SQL Injection (CVE-2018-12254)
|
|
Critical
|
26 Apr 2018 |
14 Aug 2025 |
CPAI-2018-0355
|
|
CVE-2018-7602
|
Drupal Remote Code Execution (CVE-2018-7602)
|
|
Critical
|
22 Apr 2018 |
14 Aug 2025 |
CPAI-2018-0337
|
|
CVE-2018-2628 CVE-2018-2893
|
Oracle WebLogic WLS Core Component Remote Code Execution (CVE-2018-2628; CVE-2018-2893)
|
|
Critical
|
29 Mar 2018 |
6 Aug 2025 |
CPAI-2018-0189
|
|
|
Cobalt Strike Beacon Suspicious Communication
|
|
Critical
|
23 Jan 2018 |
14 Jul 2025 |
CPAI-2018-0132
|
|
CVE-2009-2765 CVE-2025-5441 CVE-2025-5442
|
Multiple IoT Command Injection (CVE-2009-2765; CVE-2025-5441; CVE-2025-5442)
|
|
High
|
22 Nov 2018 |
27 Jun 2025 |
CPAI-2018-1299
|
|
CVE-2017-6343
|
Dahuasecurity Smartpss Firmware Authentication Bypass (CVE-2017-6343)
|
|
Critical
|
17 Apr 2018 |
27 Jun 2025 |
CPAI-2018-0323
|
|
CVE-2018-1273
|
Pivotal Spring Commons Remote Code Execution (CVE-2018-1273)
|
|
Critical
|
9 Dec 2018 |
26 Jun 2025 |
CPAI-2018-1274
|
|
CVE-2018-1002105
|
Kubernetes API server Authentication Bypass (CVE-2018-1002105)
|
|
Critical
|
8 Oct 2018 |
26 Jun 2025 |
CPAI-2018-1017
|
|
CVE-2018-1156
|
MikroTik RouterOS Buffer Overflow (CVE-2018-1156)
|
|
High
|
2 Oct 2018 |
26 Jun 2025 |
CPAI-2018-2929
|
|
CVE-2018-12015
|
Perl Archive Tar Arbitrary File Overwrite (CVE-2018-12015)
|
|
High
|
15 Aug 2018 |
26 Jun 2025 |
CPAI-2018-0845
|
|
CVE-2013-2618
|
Network Weathermap Persistent Cross-Site Scripting (CVE-2013-2618)
|
|
Critical
|
31 Jul 2018 |
26 Jun 2025 |
CPAI-2018-0802
|
|
CVE-2009-3364 CVE-2017-6465 CVE-2018-7573
|
FTPShell Client Buffer Overflow (CVE-2009-3364; CVE-2017-6465; CVE-2018-7573)
|
|
High
|
9 Jul 2018 |
26 Jun 2025 |
CPAI-2018-0696
|
|
CVE-2018-1000094
|
CMS Made Simple File Manager Remote Code Execution (CVE-2018-1000094)
|
|
Critical
|
25 Jun 2018 |
26 Jun 2025 |
CPAI-2018-0738
|
|
CVE-2012-5960
|
Portable SDK for UPnP Root Device Buffer Overflow - Ver2 (CVE-2012-5960)
|
|
Medium
|
30 May 2018 |
26 Jun 2025 |
CPAI-2017-1964
|
Quagga
|
CVE-2017-16227
|
Quagga aspath_put BGP Session Drop Denial of Service (CVE-2017-16227)
|
|
Critical
|
27 May 2018 |
26 Jun 2025 |
CPAI-2018-0488
|
|
CVE-2013-0143
|
QNAP QTS Remote Command Injection (CVE-2013-0143)
|
|
Medium
|
14 May 2018 |
26 Jun 2025 |
CPAI-2018-0486
|
|
CVE-2018-9846
|
Roundcube Webmail archive.php IMAP Command Injection (CVE-2018-9846)
|
|
Medium
|
14 May 2018 |
26 Jun 2025 |
CPAI-2018-0502
|
|
CVE-2017-14919
|
Node.js Foundation Node.js zlib windowBits Denial of Service (CVE-2017-14919)
|
|
Critical
|
13 May 2018 |
26 Jun 2025 |
CPAI-2018-0458
|
|
CVE-2018-10562
|
Dasan GPON Router Remote Command Injection (CVE-2018-10562)
|
|
Critical
|
15 Apr 2018 |
26 Jun 2025 |
CPAI-2018-0786
|
|
CVE-2017-17405
|
Ruby Net FTP Command Injection (CVE-2017-17405) - Ver2
|
|
Medium
|
11 Apr 2018 |
26 Jun 2025 |
CPAI-2018-0777
|
|
CVE-2017-4971
|
Spring Web Flow SPEL Command Injection (CVE-2017-4971) - Ver2
|
|
Medium
|
16 Jan 2018 |
26 Jun 2025 |
CPAI-2018-0037
|
|
CVE-2017-16602
|
NetGain Systems Enterprise Manager exec_jsp Command Execution (CVE-2017-16602)
|
|
Critical
|
19 Jun 2018 |
25 Jun 2025 |
CPAI-2018-0545
|
|
CVE-2018-11510
|
Asustor ADM Command Injection (CVE-2018-11510)
|
|
Medium
|
24 Dec 2018 |
24 Jun 2025 |
CPAI-2018-1287
|
|
CVE-2018-15715
|
Zoom Desktop Application Unauthorized UDP Message (CVE-2018-15715)
|
|
N/A
|
28 Oct 2018 |
24 Jun 2025 |
CPAI-2018-1028
|
|
CVE-2018-10933
|
libssh SSH2_MSG_USERAUTH_SUCCESS Authentication Bypass (CVE-2018-10933)
|
|
High
|
12 Jul 2018 |
24 Jun 2025 |
CPAI-2018-0570
|
|
CVE-2018-12520
|
ntopng Network Analyzer Authentication Bypass (CVE-2018-12520)
|