2017 CVE Vulnerabilities
17,104 CVEs published in 2017.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2017-15334 | — | — | 0.9% | Feb 15, 2018 | The SIP backup feature in Huawei DP300 V500R002C00, IPS Module V100R001C10, V100R001C20, V100R001C30, V500R001C00, V500R... |
| CVE-2017-15333 | — | — | 0.5% | Feb 15, 2018 | XML parser in Huawei S12700 V200R005C00,S1700 V200R009C00, V200R010C00,S3700 V100R006C03, V100R006C05,S5700 V200R001C00,... |
| CVE-2017-15332 | — | — | 1.5% | Feb 15, 2018 | Huawei AR120-S V200R006C10, V200R007C00, V200R008C20, V200R008C30, AR1200 V200R006C10, V200R006C13, V200R007C00, V200R00... |
| CVE-2017-15331 | — | — | 1.5% | Feb 15, 2018 | Huawei AR120-S V200R006C10, V200R007C00, V200R008C20, V200R008C30, AR1200 V200R006C10, V200R006C13, V200R007C00, V200R00... |
| CVE-2017-15330 | — | — | 0.6% | Feb 15, 2018 | The Flp Driver in some Huawei smartphones of the software Vicky-AL00AC00B124D, Vicky-AL00AC00B157D, Vicky-AL00AC00B167 h... |
| CVE-2017-15329 | — | — | 0.9% | Feb 15, 2018 | Huawei UMA V200R001C00 has a SQL injection vulnerability in the operation and maintenance module. An attacker logs in to... |
| CVE-2017-18088 | — | — | 1.0% | Feb 15, 2018 | Various plugin servlet resources in Atlassian Bitbucket Server before version 5.3.7 (the fixed version for 5.3.x), from ... |
| CVE-2017-18087 | — | — | 1.8% | Feb 15, 2018 | The download commit resource in Atlassian Bitbucket Server from version 5.1.0 before version 5.1.7, from version 5.2.0 b... |
| CVE-2017-18189 | — | — | 5.2% | Feb 15, 2018 | In the startread function in xa.c in Sound eXchange (SoX) through 14.4.2, a corrupt header specifying zero channels trig... |
| CVE-2017-12726 | — | — | 1.1% | Feb 15, 2018 | A Use of Hard-coded Password issue was discovered in Smiths Medical Medfusion 4000 Wireless Syringe Infusion Pump, Versi... |
| CVE-2017-12725 | — | — | 0.9% | Feb 15, 2018 | A Use of Hard-coded Credentials issue was discovered in Smiths Medical Medfusion 4000 Wireless Syringe Infusion Pump, Ve... |
| CVE-2017-12724 | — | — | 1.3% | Feb 15, 2018 | A Use of Hard-coded Credentials issue was discovered in Smiths Medical Medfusion 4000 Wireless Syringe Infusion Pump, Ve... |
| CVE-2017-12723 | — | — | 1.0% | Feb 15, 2018 | A Password in Configuration File issue was discovered in Smiths Medical Medfusion 4000 Wireless Syringe Infusion Pump, V... |
| CVE-2017-12722 | — | — | 2.5% | Feb 15, 2018 | An Out-of-bounds Read issue was discovered in Smiths Medical Medfusion 4000 Wireless Syringe Infusion Pump, Version 1.1,... |
| CVE-2017-12721 | — | — | 0.7% | Feb 15, 2018 | An Improper Certificate Validation issue was discovered in Smiths Medical Medfusion 4000 Wireless Syringe Infusion Pump,... |
| CVE-2017-12720 | — | — | 1.9% | Feb 15, 2018 | An Improper Access Control issue was discovered in Smiths Medical Medfusion 4000 Wireless Syringe Infusion Pump, Version... |
| CVE-2017-12718 | — | — | 13.0% | Feb 15, 2018 | A Classic Buffer Overflow issue was discovered in Smiths Medical Medfusion 4000 Wireless Syringe Infusion Pump, Version ... |
| CVE-2017-13273 | — | — | 0.2% | Feb 15, 2018 | In xt_qtaguid.c, there is a race condition due to insufficient locking. This could lead to local elevation of privileges... |
| CVE-2017-18188 | — | — | 0.4% | Feb 14, 2018 | OpenRC opentmpfiles through 0.1.3, when the fs.protected_hardlinks sysctl is turned off, allows local users to obtain ow... |
| CVE-2017-6230 | — | — | 2.3% | Feb 14, 2018 | Ruckus Networks Solo APs firmware releases R110.x or before and Ruckus Networks SZ managed APs firmware releases R5.x or... |
| CVE-2017-6229 | — | — | 2.3% | Feb 14, 2018 | Ruckus Networks Unleashed AP firmware releases before 200.6.10.1.x and Ruckus Networks Zone Director firmware releases 1... |
| CVE-2017-18187 | — | — | 3.2% | Feb 14, 2018 | In ARM mbed TLS before 2.7.0, there is a bounds-check bypass through an integer overflow in PSK identity parsing in the ... |
| CVE-2017-1682 | — | — | 0.6% | Feb 14, 2018 | IBM Connections 4.0, 4.5, 5.0, 5.5, and 6.0 is vulnerable to cross-site scripting. This vulnerability allows users to em... |
| CVE-2017-1499 | — | — | 2.3% | Feb 14, 2018 | IBM Maximo Asset Management 7.5 and 7.6 could allow a remote attacker to include arbitrary files, which could allow the ... |
| CVE-2017-15699 | MEDIUM | 6.5 | 3.2% | Feb 13, 2018 | A Denial of Service vulnerability was found in Apache Qpid Dispatch Router versions 0.7.0 and 0.8.0. To exploit this vul... |
Check if your code is affected by 2017 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now