2017 CVE Vulnerabilities
17,104 CVEs published in 2017.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2017-14438 | HIGH | 7.5 | 1.9% | May 14, 2018 | Exploitable denial of service vulnerabilities exists in the Service Agent functionality of Moxa EDR-810 V4.1 build 17030... |
| CVE-2017-14437 | HIGH | 7.5 | 2.2% | May 14, 2018 | An exploitable denial of service vulnerability exists in the web server functionality of Moxa EDR-810 V4.1 build 1703031... |
| CVE-2017-14436 | HIGH | 7.5 | 2.2% | May 14, 2018 | An exploitable denial of service vulnerability exists in the web server functionality of Moxa EDR-810 V4.1 build 1703031... |
| CVE-2017-14435 | HIGH | 7.5 | 2.2% | May 14, 2018 | An exploitable denial of service vulnerability exists in the web server functionality of Moxa EDR-810 V4.1 build 1703031... |
| CVE-2017-14434 | HIGH | 8.8 | 4.5% | May 14, 2018 | An exploitable command injection vulnerability exists in the web server functionality of Moxa EDR-810 V4.1 build 1703031... |
| CVE-2017-14433 | HIGH | 8.8 | 4.8% | May 14, 2018 | An exploitable command injection vulnerability exists in the web server functionality of Moxa EDR-810 V4.1 build 1703031... |
| CVE-2017-14432 | HIGH | 8.8 | 4.5% | May 14, 2018 | An exploitable command injection vulnerability exists in the web server functionality of Moxa EDR-810 V4.1 build 1703031... |
| CVE-2017-12129 | HIGH | 8 | 0.7% | May 14, 2018 | An exploitable Weak Cryptography for Passwords vulnerability exists in the web server functionality of Moxa EDR-810 V4.1... |
| CVE-2017-12128 | HIGH | 7.5 | 48.1% | May 14, 2018 | An exploitable information disclosure vulnerability exists in the Server Agent functionality of Moxa EDR-810 V4.1 build ... |
| CVE-2017-12127 | MEDIUM | 4.4 | 0.4% | May 14, 2018 | A password storage vulnerability exists in the operating system functionality of Moxa EDR-810 V4.1 build 17030317. An at... |
| CVE-2017-12126 | HIGH | 8.8 | 1.0% | May 14, 2018 | An exploitable cross-site request forgery vulnerability exists in the web server functionality of Moxa EDR-810 V4.1 buil... |
| CVE-2017-12125 | HIGH | 8.8 | 4.0% | May 14, 2018 | An exploitable command injection vulnerability exists in the web server functionality of Moxa EDR-810 V4.1 build 1703031... |
| CVE-2017-12124 | MEDIUM | 6.5 | 1.9% | May 14, 2018 | An exploitable denial of service vulnerability exists in the web server functionality of Moxa EDR-810 V4.1 build 1703031... |
| CVE-2017-12123 | HIGH | 8.8 | 1.0% | May 14, 2018 | An exploitable clear text transmission of password vulnerability exists in the web server and telnet functionality of Mo... |
| CVE-2017-12121 | HIGH | 8.8 | 4.3% | May 14, 2018 | An exploitable command injection vulnerability exists in the web server functionality of Moxa EDR-810 V4.1 build 1703031... |
| CVE-2017-12120 | HIGH | 8.8 | 4.3% | May 14, 2018 | An exploitable command injection vulnerability exists in the web server functionality of Moxa EDR-810 V4.1 build 1703031... |
| CVE-2017-6021 | — | — | 1.7% | May 14, 2018 | In Schneider Electric ClearSCADA 2014 R1 (build 75.5210) and prior, 2014 R1.1 (build 75.5387) and prior, 2015 R1 (build ... |
| CVE-2017-16860 | — | — | 0.9% | May 14, 2018 | The invalidRedirectUrl template in Atlassian Application Links before version 5.2.7, from version 5.3.0 before version 5... |
| CVE-2017-6015 | — | — | 0.7% | May 11, 2018 | Without quotation marks, any whitespace in the file path for Rockwell Automation FactoryTalk Activation version 4.00.02 ... |
| CVE-2017-18267 | — | — | 1.9% | May 10, 2018 | The FoFiType1C::cvtGlyph function in fofi/FoFiType1C.cc in Poppler through 0.64.0 allows remote attackers to cause a den... |
| CVE-2017-6293 | — | — | 0.2% | May 10, 2018 | In Android before the 2018-05-05 security patch level, NVIDIA Tegra X1 TZ contains a vulnerability in Widevine TA where ... |
| CVE-2017-6289 | — | — | 0.2% | May 10, 2018 | In Android before the 2018-05-05 security patch level, NVIDIA Trusted Execution Environment (TEE) contains a memory corr... |
| CVE-2017-18266 | — | — | 2.5% | May 10, 2018 | The open_envvar function in xdg-open in xdg-utils before 1.1.3 does not validate strings before launching the program sp... |
| CVE-2017-2601 | MEDIUM | 5.4 | 2.1% | May 10, 2018 | Jenkins before versions 2.44, 2.32.2 is vulnerable to a persisted cross-site scripting in parameter names and descriptio... |
| CVE-2017-14481 | CRITICAL | 9.8 | 5.9% | May 9, 2018 | In the MMM::Agent::Helpers::Network::send_arp function in MySQL Multi-Master Replication Manager (MMM) mmm_agentd 2.2.1 ... |
Check if your code is affected by 2017 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now