2017 CVE Vulnerabilities
17,104 CVEs published in 2017.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2017-6169 | — | — | 1.4% | Feb 6, 2018 | In versions 13.0.0, 12.0.0-12.1.3, or 11.6.0-11.6.2, an F5 BIG-IP virtual server using the URL categorization feature ma... |
| CVE-2017-9414 | — | — | 15.7% | Feb 5, 2018 | Cross-site request forgery (CSRF) vulnerability in the Subscribe to Podcast feature in Subsonic 6.1.1 allows remote atta... |
| CVE-2017-15536 | — | — | 0.9% | Feb 5, 2018 | An issue was discovered in Cloudera Data Science Workbench (CDSW) 1.x before 1.2.0. Several web application vulnerabilit... |
| CVE-2017-8783 | — | — | 0.9% | Feb 4, 2018 | Synacor Zimbra Collaboration Suite (ZCS) before 8.7.10 has Persistent XSS. |
| CVE-2017-17703 | — | — | 1.0% | Feb 4, 2018 | Synacor Zimbra Collaboration Suite (ZCS) before 8.8.3 has Persistent XSS. |
| CVE-2017-18123 | — | — | 2.6% | Feb 3, 2018 | The call parameter of /lib/exe/ajax.php in DokuWiki through 2017-02-19e does not properly encode user input, which leads... |
| CVE-2017-17108 | — | — | 2.2% | Feb 3, 2018 | Path traversal vulnerability in the administrative panel in KonaKart eCommerce Platform version 8.7 and earlier could al... |
| CVE-2017-5727 | — | — | 0.3% | Feb 2, 2018 | Pointer dereference in subsystem in Intel Graphics Driver 15.40.x.x, 15.45.x.x, 15.46.x.x allows unprivileged user to el... |
| CVE-2017-18122 | — | — | 1.1% | Feb 2, 2018 | A signature-validation bypass issue was discovered in SimpleSAMLphp through 1.14.16. A SimpleSAMLphp Service Provider us... |
| CVE-2017-18121 | — | — | 1.2% | Feb 2, 2018 | The consentAdmin module in SimpleSAMLphp through 1.14.15 is vulnerable to a Cross-Site Scripting attack, allowing an att... |
| CVE-2017-18086 | — | — | 0.8% | Feb 2, 2018 | Various resources in Atlassian Confluence Server before version 6.4.2 allow remote attackers to inject arbitrary HTML or... |
| CVE-2017-18085 | — | — | 0.8% | Feb 2, 2018 | The viewdefaultdecorator resource in Atlassian Confluence Server before version 6.6.1 allows remote attackers to inject ... |
| CVE-2017-18084 | — | — | 0.6% | Feb 2, 2018 | The usermacros resource in Atlassian Confluence Server before version 6.3.4 allows remote attackers to inject arbitrary ... |
| CVE-2017-18083 | — | — | 0.6% | Feb 2, 2018 | The editinword resource in Atlassian Confluence Server before version 6.4.0 allows remote attackers to inject arbitrary ... |
| CVE-2017-18082 | — | — | 0.6% | Feb 2, 2018 | The plan configure branches resource in Atlassian Bamboo before version 6.2.3 allows remote attackers to inject arbitrar... |
| CVE-2017-18081 | — | — | 0.8% | Feb 2, 2018 | The signupUser resource in Atlassian Bamboo before version 6.3.1 allows remote attackers to inject arbitrary HTML or Jav... |
| CVE-2017-18080 | — | — | 0.5% | Feb 2, 2018 | The saveConfigureSecurity resource in Atlassian Bamboo before version 6.3.1 allows remote attackers to modify security s... |
| CVE-2017-18042 | — | — | 0.7% | Feb 2, 2018 | The update user administration resource in Atlassian Bamboo before version 6.3.1 allows remote attackers to modify user ... |
| CVE-2017-18041 | — | — | 0.6% | Feb 2, 2018 | The viewDeploymentVersionJiraIssuesDialog resource in Atlassian Bamboo before version 6.2.0 allows remote attackers to i... |
| CVE-2017-18040 | — | — | 0.6% | Feb 2, 2018 | The viewDeploymentVersionCommits resource in Atlassian Bamboo before version 6.2.0 allows remote attackers to inject arb... |
| CVE-2017-18039 | — | — | 1.1% | Feb 2, 2018 | The IncomingMailServers resource in Atlassian Jira from version 6.2.1 before version 7.4.4 allows remote attackers to in... |
| CVE-2017-18038 | — | — | 1.5% | Feb 2, 2018 | The repository settings resource in Atlassian Bitbucket Server before version 5.6.0 allows remote attackers to read the ... |
| CVE-2017-18037 | — | — | 1.3% | Feb 2, 2018 | The git repository tag rest resource in Atlassian Bitbucket Server from version 3.7.0 before 4.14.11 (the fixed version ... |
| CVE-2017-18036 | — | — | 0.9% | Feb 2, 2018 | The Github repository importer in Atlassian Bitbucket Server before version 5.3.0 allows remote attackers to determine i... |
| CVE-2017-18035 | — | — | 0.8% | Feb 2, 2018 | The /rest/review-coverage-chart/1.0/data/<repository_name>/.json resource in Atlassian Fisheye and Crucible before versi... |
Check if your code is affected by 2017 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now