VULNERABILITY REMEDIATION

CVE remediation guides

Move from asset identification to supported remediation and post-change verification while keeping source evidence visible.

These defensive guides do not provide exploit reproduction or bypass instructions.
01

Confirm exposure first

Match the product, version, installation path, and external exposure before treating a score as an action order.

02

Prefer supported fixes

Use vendor advisories and supported update paths. An unverified fixed-version field stays visibly unresolved.

03

Verify and retain rollback

Confirm version state, service health, access paths, logs, and rollback readiness after the change.

18,929 guide candidatesPage 1512 of 1578
Known exploitedHighFixed-version data
CVE-2018-11776

Apache Struts

Affected
2.3 to 2.3.34, 2.5 to 2.5.16, >= 2.0.4 < 2.3.35, >= 2.5.0 < 2.5.17, >= 7.3, >= 9.5, < 12.5.0, 13.3.0.0, 13.4.0.0, <= 3.4.9.4237, >= 4.0.0 <= 4.0.6.5281, >= 8.0.0 <= 8.0.2.8191
Fixed
2.3.35, 2.5.17, 12.5.0
Review reviewHighResearch in progress
CVE-2018-10902

Linux Linux, debian linux, ubuntu linux

Affected
8.0, 9.0, 12.04, 14.04, 16.04, 18.04, 6.0, 7.0
Fixed
No verified fixed-version field is available yet
Known exploitedHighResearch in progress
CVE-2018-8414

Microsoft Windows

Affected
1709 (Server Core Installation), 1803 (Server Core Installation), 1703 for 32-bit Systems, 1703 for x64-based Systems, 1709 for 32-bit Systems, 1709 for x64-based Systems, 1803 for 32-bit Systems, 1803 for x64-based Systems
Fixed
No verified fixed-version field is available yet
Known exploitedHighResearch in progress
CVE-2018-8406

Microsoft DirectX Graphics Kernel (DXGKRNL)

Affected
(Server Core installation), 32-bit Systems, 1607 for 32-bit Systems, 1607 for x64-based Systems, 1703 for 32-bit Systems, 1703 for x64-based Systems, 1709 for 32-bit Systems, 1709 for x64-based Systems, 1803 for 32-bit Systems, 1803 for x64-based Systems, x64-based Systems, 1709 (Server Core Installation), 1803 (Server Core Installation)
Fixed
No verified fixed-version field is available yet
Known exploitedHighResearch in progress
CVE-2018-8405

Microsoft DirectX Graphics Kernel (DXGKRNL)

Affected
(Server Core installation), Windows RT 8.1, 32-bit systems, x64-based systems, 1607 for 32-bit Systems, 1607 for x64-based Systems, 1703 for 32-bit Systems, 1703 for x64-based Systems, 1709 for 32-bit Systems, 1709 for x64-based Systems, 1803 for 32-bit Systems, 1803 for x64-based Systems, 1709 (Server Core Installation), 1803 (Server Core Installation), r2
Fixed
No verified fixed-version field is available yet
Known exploitedHighResearch in progress
CVE-2018-8373

Microsoft Internet Explorer Scripting Engine

Affected
Windows Server 2008 for 32-bit Systems Service Pack 2, Windows Server 2008 for x64-based Systems Service Pack 2, Windows 10 for 32-bit Systems, Windows 10 for x64-based Systems, Windows 10 1607 for 32-bit Systems, Windows 10 1607 for x64-based Systems, Windows 10 1703 for 32-bit Systems, Windows 10 1703 for x64-based Systems, Windows 10 1709 for 32-bit Systems, Windows 10 1709 for x64-based Systems, Windows 10 1803 for 32-bit Systems, Windows 10 1803 for x64-based Systems, Windows 7 for 32-bit Systems Service Pack 1, Windows 7 for x64-based Systems Service Pack 1, Windows 8.1 for 32-bit systems, Windows 8.1 for x64-based systems, Windows RT 8.1, Windows Server 2008 R2 for x64-based Systems Service Pack 1, Windows Server 2012 R2, Windows Server 2016
Fixed
No verified fixed-version field is available yet
Known exploitedHighResearch in progress
CVE-2018-15133

Laravel Laravel Framework

Affected
<= 5.5.40, >= 5.6.0 <= 5.6.29
Fixed
No verified fixed-version field is available yet
Known exploitedCriticalResearch in progress
CVE-2018-14933

NUUO NVRmini Devices

Affected
2016
Fixed
No verified fixed-version field is available yet
Known exploitedCriticalResearch in progress
CVE-2018-14847

MikroTik RouterOS

Affected
<= 6.42
Fixed
No verified fixed-version field is available yet
Known exploitedCriticalFixed-version data
CVE-2018-7602

Drupal Core

Affected
unspecified, >= 7.0 < 7.59, >= 8.4.0 < 8.4.8, >= 8.5.0 < 8.5.3, 7.0, 8.0, 9.0
Fixed
7.59, 8.4.8, 8.5.3
Known exploitedHighFixed-version data
CVE-2018-8298

ChakraCore ChakraCore scripting engine

Affected
ChakraCore, < 1.10.1
Fixed
1.10.1
Known exploitedHighResearch in progress
CVE-2018-5002

Adobe Flash Player

Affected
Adobe Flash Player 29.0.0.171 and earlier versions, <= 29.0.0.171, 6.0
Fixed
No verified fixed-version field is available yet