Known Exploited Vulnerabilities (KEV)

ID Title Severity CVSS EPSS Source Updated
cve-2018-10376 An integer overflow in the transferProxy function of a smart contract implementation for SmartMesh (aka SMT), an Ethereum ERC20 token, allows attackers to accomplish an unauthorized increase of digital assets via crafted _fee and _value parameters, as exploited in the wild in April 2018, aka the "proxyOverflow" issue. HIGH 7.5 N/A cvelistv5 2026-06-17
cve-2018-10299 An integer overflow in the batchTransfer function of a smart contract implementation for Beauty Ecosystem Coin (BEC), the Ethereum ERC20 token used in the Beauty Chain economic system, allows attackers to accomplish an unauthorized increase of digital assets by providing two _receivers arguments in conjunction with a large _value argument, as exploited in the wild in April 2018, aka the "batchOverflow" issue. HIGH 7.5 N/A cvelistv5 2026-06-17
cve-2018-1000861 Jenkins Stapler Web Framework Deserialization of Untrusted Data Vulnerability HIGH N/A N/A cvelistv5 2022-02-10
cve-2018-1000130 jolokia: JMX proxy mode vulnerable to remote code execution HIGH 8.1 N/A cvelistv5 2026-05-14
cve-2018-0824 Microsoft COM for Windows Deserialization of Untrusted Data Vulnerability HIGH 7.5 N/A cvelistv5 2024-08-05
cve-2018-0802 Microsoft Office Memory Corruption Vulnerability HIGH 7.8 N/A cvelistv5 2021-11-03
cve-2018-0798 Microsoft Office Memory Corruption Vulnerability HIGH 8.8 N/A cvelistv5 2021-11-03
cve-2018-0296 Cisco Adaptive Security Appliance (ASA) Denial-of-Service Vulnerability HIGH 7.5 N/A cvelistv5 2021-11-03
cve-2018-0180 Cisco IOS Software Denial-of-Service Vulnerability HIGH N/A N/A cvelistv5 2022-03-03
cve-2018-0179 Cisco IOS Software Denial-of-Service Vulnerability HIGH N/A N/A cvelistv5 2022-03-03
cve-2018-0175 Cisco IOS, XR, and XE Software Buffer Overflow Vulnerability HIGH N/A N/A cvelistv5 2022-03-03
cve-2018-0174 Cisco IOS Software and Cisco IOS XE Software Improper Input Validation Vulnerability HIGH N/A N/A cvelistv5 2022-03-03
cve-2018-0173 Cisco IOS and IOS XE Software Improper Input Validation Vulnerability HIGH N/A N/A cvelistv5 2022-03-03
cve-2018-0172 Cisco IOS and IOS XE Software Improper Input Validation Vulnerability HIGH N/A N/A cvelistv5 2022-03-03
cve-2018-0171 Cisco IOS and IOS XE Software Smart Install Remote Code Execution Vulnerability HIGH N/A N/A cvelistv5 2021-11-03
cve-2018-0167 Cisco IOS, XR, and XE Software Buffer Overflow Vulnerability HIGH N/A N/A cvelistv5 2022-03-03
cve-2018-0161 Cisco IOS Software Resource Management Errors Vulnerability HIGH N/A N/A cvelistv5 2022-03-03
cve-2018-0159 Cisco IOS and XE Software Internet Key Exchange Version 1 Denial-of-Service Vulnerability HIGH N/A N/A cvelistv5 2022-03-03
cve-2018-0158 Cisco IOS and XE Software Internet Key Exchange Memory Leak Vulnerability HIGH N/A N/A cvelistv5 2022-03-03
cve-2018-0156 Cisco IOS Software and Cisco IOS XE Software Smart Install Denial-of-Service Vulnerability HIGH N/A N/A cvelistv5 2022-03-03
cve-2018-0155 Cisco Catalyst Bidirectional Forwarding Detection Denial-of-Service Vulnerability HIGH N/A N/A cvelistv5 2022-03-03
cve-2018-0154 Cisco IOS Software Integrated Services Module for VPN Denial-of-Service Vulnerability HIGH N/A N/A cvelistv5 2022-03-03
cve-2018-0151 Cisco IOS Software and Cisco IOS XE Software Quality of Service Remote Code Execution Vulnerability HIGH N/A N/A cvelistv5 2022-03-03
cve-2018-0147 Cisco Secure Access Control System Java Deserialization Vulnerability CRITICAL 9.8 N/A cvelistv5 2022-03-25
cve-2018-0127 CVE-2018-0127 HIGH N/A N/A cvelistv5
cve-2018-0125 Cisco VPN Routers Remote Code Execution Vulnerability CRITICAL 9.8 N/A cvelistv5 2022-03-25
cve-2017-9844 SAP NetWeaver 7400.12.21.30308 allows remote attackers to cause a denial of service and possibly execute arbitrary code via a crafted serialized Java object in a request to metadatauploader, aka SAP Security Note 2399804. NOTE: The vendor states that the devserver package of Visual Composer deserializes a malicious object that may cause legitimate users accessing a service, either by crashing or flooding the service. HIGH 7.5 N/A cvelistv5 2026-06-17
cve-2017-9841 PHPUnit Command Injection Vulnerability HIGH N/A N/A cvelistv5 2022-02-15
cve-2017-9833 CVE-2017-9833 HIGH N/A N/A cvelistv5
cve-2017-9822 DotNetNuke (DNN) Remote Code Execution Vulnerability HIGH 8.8 N/A cvelistv5 2021-11-03