2017 CVE Vulnerabilities

17,104 CVEs published in 2017.

Filter:CRITICALClear
CVE IDSeverityCVSSDescription
CVE-2017-12477CRITICAL9.8It was discovered that the bpserverd proprietary protocol in Unitrends Backup (UB) before 10.0.0, as invoked through xin...
CVE-2017-9855CRITICAL9.8An issue was discovered in SMA Solar Technology products. A secondary authentication system is available for Installers ...
CVE-2017-12562CRITICAL9.8Heap-based Buffer Overflow in the psf_binheader_writef function in common.c in libsndfile through 1.0.28 allows remote a...
CVE-2017-10818CRITICAL9.8MaLion for Windows and Mac versions 3.2.1 to 5.2.1 uses a hardcoded cryptographic key which may allow an attacker to alt...
CVE-2017-10817CRITICAL9.8MaLion for Windows and Mac 5.0.0 to 5.2.1 allows remote attackers to bypass authentication to alter settings in Relay Se...
CVE-2017-10816CRITICAL9.8SQL injection vulnerability in the MaLion for Windows and Mac 5.0.0 to 5.2.1 allows remote attackers to execute arbitrar...
CVE-2017-12424CRITICAL9.8In shadow before 4.5, the newusers tool could be made to manipulate internal data structures in ways unintended by the a...
CVE-2017-9769CRITICAL9.8A specially crafted IOCTL can be issued to the rzpnk.sys driver in Razer Synapse 2.20.15.1104 that is forwarded to ZwOpe...
CVE-2017-9521CRITICAL9.8The Comcast firmware on Cisco DPC3939 (firmware version dpc3939-P20-18-v303r20421733-160420a-CMCST); Cisco DPC3939 (firm...
CVE-2017-3222CRITICAL9.8Hard-coded credentials in AmosConnect 8 allow remote attackers to gain full administrative privileges, including the abi...
CVE-2017-7480CRITICAL9.8rkhunter versions before 1.4.4 are vulnerable to file download over insecure channel when doing mirror update resulting ...
CVE-2017-6316CRITICAL9.8Citrix NetScaler SD-WAN devices through v9.1.2.26.561201 allow remote attackers to execute arbitrary shell commands as r...
CVE-2017-7977CRITICAL9.8The Screensavercc component in eLux RP before 5.5.0 allows attackers to bypass intended configuration restrictions and e...
CVE-2017-11436CRITICAL9.8D-Link DIR-615 before v20.12PTb04 has a second admin account with a 0x1 BACKDOOR value, which might allow remote attacke...
CVE-2017-11435CRITICAL9.8The Humax Wi-Fi Router model HG100R-* 2.0.6 is prone to an authentication bypass vulnerability via specially crafted req...
CVE-2017-8011CRITICAL9.8EMC ViPR SRM, EMC Storage M&R, EMC VNX M&R, EMC M&R for SAS Solution Packs (EMC ViPR SRM prior to 4.1, EMC Storage M&R p...
CVE-2017-2349CRITICAL9.9A command injection vulnerability in the IDP feature of Juniper Networks Junos OS on SRX series devices potentially allo...
CVE-2017-2345CRITICAL9.8On Junos OS devices with SNMP enabled, a network based attacker with unfiltered access to the RE can cause the Junos OS ...
CVE-2017-2343CRITICAL10The Integrated User Firewall (UserFW) feature was introduced in Junos OS version 12.1X47-D10 on the Juniper SRX Series d...
CVE-2017-2336CRITICAL9.6A reflected cross site scripting vulnerability in NetScreen WebUI of Juniper Networks Juniper NetScreen Firewall+VPN run...
CVE-2017-11349CRITICAL9.8dataTaker DT8x dEX 1.72.007 allows remote attackers to compose programs or schedules, for purposes such as sending e-mai...
CVE-2017-10601CRITICAL9.8A specific device configuration can result in a commit failure condition. When this occurs, a user is logged in without ...
CVE-2017-1000081CRITICAL9.8Linux foundation ONOS 1.9.0 is vulnerable to unauthenticated upload of applications (.oar) resulting in remote code exec...
CVE-2017-1000060CRITICAL9.8EyesOfNetwork (EON) 5.1 Unauthenticated SQL Injection in eonweb leading to remote root
CVE-2017-1000047CRITICAL9.8rbenv (all current versions) is vulnerable to Directory Traversal in the specification of Ruby version resulting in arbi...

Check if your code is affected by 2017 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now