2017 CVE Vulnerabilities

17,104 CVEs published in 2017.

CVE IDSeverityCVSSDescription
CVE-2017-18027In ImageMagick 7.0.7-1 Q16, a memory leak vulnerability was found in the function ReadMATImage in coders/mat.c, which al...
CVE-2017-16743An Improper Authorization issue was discovered in PHOENIX CONTACT FL SWITCH 3xxx, 4xxx, and 48xxx Series products runnin...
CVE-2017-16741An Information Exposure issue was discovered in PHOENIX CONTACT FL SWITCH 3xxx, 4xxx, and 48xxx Series products running ...
CVE-2017-16739An issue was discovered in WECON Technology LEVI Studio HMI Editor v1.8.29 and prior. Specially-crafted malicious files ...
CVE-2017-16737An issue was discovered in WECON Technology LEVI Studio HMI Editor v1.8.29 and prior. A specially-crafted malicious file...
CVE-2017-14030An issue was discovered in Moxa MXview v2.8 and prior. The unquoted service path escalation vulnerability could allow an...
CVE-2017-18014An NC-25986 issue was discovered in the Logging subsystem of Sophos XG Firewall with SFOS before 17.0.3 MR3. An unauthen...
CVE-2017-17970Multiple SQL injection vulnerabilities in Muviko 1.1 allow remote attackers to execute arbitrary SQL commands via the (1...
CVE-2017-16887The portal on FiberHome Mobile WIFI Device Model LM53Q1 VH519R05C01S38 uses SOAP based web services in order to interact...
CVE-2017-16886The portal on FiberHome Mobile WIFI Device Model LM53Q1 VH519R05C01S38 uses SOAP based web services in order to interact...
CVE-2017-16885Improper Permissions Handling in the Portal on FiberHome LM53Q1 VH519R05C01S38 devices (intended for obtaining informati...
CVE-2017-0869NVIDIA driver contains an integer overflow vulnerability which could cause a use after free and possibly lead to an elev...
CVE-2017-2158Improper verification when expanding ZIP64 archives in Lhaplus versions 1.73 and earlier may lead to unintended contents...
CVE-2017-16864The issue search resource in Atlassian Jira before version 7.4.2 allows remote attackers to inject arbitrary HTML or Jav...
CVE-2017-16862The IncomingMailServers resource in Atlassian Jira before version 7.6.2 allows remote attackers to modify the "incoming ...
CVE-2017-14594The printable searchrequest issue resource in Atlassian Jira before version 7.2.12 and from version 7.3.0 before 7.6.1 a...
CVE-2017-16736An Unrestricted Upload Of File With Dangerous Type issue was discovered in Advantech WebAccess versions prior to 8.3. We...
CVE-2017-16732A use-after-free issue was discovered in Advantech WebAccess versions prior to 8.3. WebAccess allows an unauthenticated ...
CVE-2017-1740IBM Curam Social Program Management 6.0.5, 6.1.1, 6.2.0, 7.0.1, and 7.0.2 is vulnerable to cross-site scripting. This vu...
CVE-2017-1739IBM Curam Social Program Management 6.0.5, 6.1.1, 6.2.0, and 7.0.1 is vulnerable to cross-site scripting. This vulnerabi...
CVE-2017-1681IBM WebSphere Application Server (IBM Liberty for Java for Bluemix 3.15) could allow a local attacker to obtain sensitiv...
CVE-2017-1478IBM Security Access Manager Appliance 9.0.0 allows web pages to be stored locally which can be read by another user on t...
CVE-2017-18016Parity Browser 1.6.10 and earlier allows remote attackers to bypass the Same Origin Policy and obtain sensitive informat...
CVE-2017-15637TP-Link WVR, WAR and ER devices allow remote authenticated administrators to execute arbitrary commands via command inje...
CVE-2017-15636TP-Link WVR, WAR and ER devices allow remote authenticated administrators to execute arbitrary commands via command inje...

Check if your code is affected by 2017 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now