2017 CVE Vulnerabilities

17,104 CVEs published in 2017.

CVE IDSeverityCVSSDescription
CVE-2017-6169In versions 13.0.0, 12.0.0-12.1.3, or 11.6.0-11.6.2, an F5 BIG-IP virtual server using the URL categorization feature ma...
CVE-2017-9414Cross-site request forgery (CSRF) vulnerability in the Subscribe to Podcast feature in Subsonic 6.1.1 allows remote atta...
CVE-2017-15536An issue was discovered in Cloudera Data Science Workbench (CDSW) 1.x before 1.2.0. Several web application vulnerabilit...
CVE-2017-8783Synacor Zimbra Collaboration Suite (ZCS) before 8.7.10 has Persistent XSS.
CVE-2017-17703Synacor Zimbra Collaboration Suite (ZCS) before 8.8.3 has Persistent XSS.
CVE-2017-18123The call parameter of /lib/exe/ajax.php in DokuWiki through 2017-02-19e does not properly encode user input, which leads...
CVE-2017-17108Path traversal vulnerability in the administrative panel in KonaKart eCommerce Platform version 8.7 and earlier could al...
CVE-2017-5727Pointer dereference in subsystem in Intel Graphics Driver 15.40.x.x, 15.45.x.x, 15.46.x.x allows unprivileged user to el...
CVE-2017-18122A signature-validation bypass issue was discovered in SimpleSAMLphp through 1.14.16. A SimpleSAMLphp Service Provider us...
CVE-2017-18121The consentAdmin module in SimpleSAMLphp through 1.14.15 is vulnerable to a Cross-Site Scripting attack, allowing an att...
CVE-2017-18086Various resources in Atlassian Confluence Server before version 6.4.2 allow remote attackers to inject arbitrary HTML or...
CVE-2017-18085The viewdefaultdecorator resource in Atlassian Confluence Server before version 6.6.1 allows remote attackers to inject ...
CVE-2017-18084The usermacros resource in Atlassian Confluence Server before version 6.3.4 allows remote attackers to inject arbitrary ...
CVE-2017-18083The editinword resource in Atlassian Confluence Server before version 6.4.0 allows remote attackers to inject arbitrary ...
CVE-2017-18082The plan configure branches resource in Atlassian Bamboo before version 6.2.3 allows remote attackers to inject arbitrar...
CVE-2017-18081The signupUser resource in Atlassian Bamboo before version 6.3.1 allows remote attackers to inject arbitrary HTML or Jav...
CVE-2017-18080The saveConfigureSecurity resource in Atlassian Bamboo before version 6.3.1 allows remote attackers to modify security s...
CVE-2017-18042The update user administration resource in Atlassian Bamboo before version 6.3.1 allows remote attackers to modify user ...
CVE-2017-18041The viewDeploymentVersionJiraIssuesDialog resource in Atlassian Bamboo before version 6.2.0 allows remote attackers to i...
CVE-2017-18040The viewDeploymentVersionCommits resource in Atlassian Bamboo before version 6.2.0 allows remote attackers to inject arb...
CVE-2017-18039The IncomingMailServers resource in Atlassian Jira from version 6.2.1 before version 7.4.4 allows remote attackers to in...
CVE-2017-18038The repository settings resource in Atlassian Bitbucket Server before version 5.6.0 allows remote attackers to read the ...
CVE-2017-18037The git repository tag rest resource in Atlassian Bitbucket Server from version 3.7.0 before 4.14.11 (the fixed version ...
CVE-2017-18036The Github repository importer in Atlassian Bitbucket Server before version 5.3.0 allows remote attackers to determine i...
CVE-2017-18035The /rest/review-coverage-chart/1.0/data/<repository_name>/.json resource in Atlassian Fisheye and Crucible before versi...

Check if your code is affected by 2017 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now