2017 CVE Vulnerabilities
17,104 CVEs published in 2017.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2017-16067 | — | — | 1.1% | Jun 7, 2018 | node-opencv was a malicious module published with the intent to hijack environment variables. It has been unpublished by... |
| CVE-2017-16066 | — | — | 1.1% | Jun 7, 2018 | opencv.js was a malicious module published with the intent to hijack environment variables. It has been unpublished by n... |
| CVE-2017-16065 | — | — | 1.2% | Jun 7, 2018 | openssl.js was a malicious module published with the intent to hijack environment variables. It has been unpublished by ... |
| CVE-2017-16064 | — | — | 1.2% | Jun 7, 2018 | node-openssl was a malicious module published with the intent to hijack environment variables. It has been unpublished b... |
| CVE-2017-16063 | — | — | 1.1% | Jun 7, 2018 | node-opensl was a malicious module published with the intent to hijack environment variables. It has been unpublished by... |
| CVE-2017-16060 | — | — | 1.2% | Jun 7, 2018 | babelcli was a malicious module published with the intent to hijack environment variables. It has been unpublished by np... |
| CVE-2017-16059 | — | — | 1.1% | Jun 7, 2018 | mssql-node was a malicious module published with the intent to hijack environment variables. It has been unpublished by ... |
| CVE-2017-16058 | — | — | 1.1% | Jun 7, 2018 | gruntcli was a malicious module published with the intent to hijack environment variables. It has been unpublished by np... |
| CVE-2017-16057 | — | — | 1.1% | Jun 7, 2018 | nodemssql was a malicious module published with the intent to hijack environment variables. It has been unpublished by n... |
| CVE-2017-16056 | — | — | 1.1% | Jun 7, 2018 | mssql.js was a malicious module published with the intent to hijack environment variables. It has been unpublished by np... |
| CVE-2017-18154 | — | — | 0.2% | Jun 6, 2018 | A crafted binder request can cause an arbitrary unmap in MediaServer in all Android releases from CAF (Android for MSM, ... |
| CVE-2017-7933 | — | — | 1.7% | Jun 6, 2018 | In ABB IP GATEWAY 3.39 and prior, some configuration files contain passwords stored in plain-text, which may allow an at... |
| CVE-2017-7931 | — | — | 2.6% | Jun 6, 2018 | In ABB IP GATEWAY 3.39 and prior, by accessing a specific uniform resource locator (URL) on the web server, a malicious ... |
| CVE-2017-7906 | — | — | 0.7% | Jun 6, 2018 | In ABB IP GATEWAY 3.39 and prior, the web server does not sufficiently verify that a request was performed by the authen... |
| CVE-2017-1480 | MEDIUM | 4.3 | 1.8% | Jun 6, 2018 | IBM Security Access Manager Appliance 8.0.0 through 8.0.1.6, and 9.0.0 through 9.0.3.1 stores potentially sensitive info... |
| CVE-2017-1476 | MEDIUM | 5.9 | 2.3% | Jun 6, 2018 | IBM Security Access Manager Appliance 7.0.0, 8.0.0 through 8.0.1.6, and 9.0.0 through 9.0.3.1 could allow a remote attac... |
| CVE-2017-1474 | MEDIUM | 5.3 | 1.8% | Jun 6, 2018 | IBM Security Access Manager Appliance 7.0.0, 8.0.0 through 8.0.1.6, and 9.0.0 through 9.0.3.1 discloses sensitive inform... |
| CVE-2017-7639 | — | — | 1.1% | Jun 5, 2018 | QNAP NAS application Proxy Server through version 1.2.0 does not authenticate requests properly. Successful exploitation... |
| CVE-2017-7637 | — | — | 3.2% | Jun 5, 2018 | QNAP NAS application Proxy Server through version 1.2.0 allows remote attackers to run arbitrary OS commands against the... |
| CVE-2017-7636 | — | — | 1.2% | Jun 5, 2018 | Cross-site scripting (XSS) vulnerability in QNAP NAS application Proxy Server through version 1.2.0 allows remote attack... |
| CVE-2017-7635 | — | — | 0.6% | Jun 5, 2018 | QNAP NAS application Proxy Server through version 1.2.0 does not utilize CSRF protections. |
| CVE-2017-7654 | — | — | 2.2% | Jun 5, 2018 | In Eclipse Mosquitto 1.4.15 and earlier, a Memory Leak vulnerability was found within the Mosquitto Broker. Unauthentica... |
| CVE-2017-7653 | — | — | 1.5% | Jun 5, 2018 | The Eclipse Mosquitto broker up to version 1.4.15 does not reject strings that are not valid UTF-8. A malicious client c... |
| CVE-2017-1350 | HIGH | 8.4 | 0.5% | Jun 5, 2018 | IBM InfoSphere Information Server 9.1, 11.3, 11.5, and 11.7 could allow a user to escalate their privileges to administr... |
| CVE-2017-18286 | — | — | 0.7% | Jun 5, 2018 | nZEDb v0.7.3.3 has XSS in the 404 error page. |
Check if your code is affected by 2017 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now