2017 CVE Vulnerabilities

17,104 CVEs published in 2017.

CVE IDSeverityCVSSDescription
CVE-2017-17609Chartered Accountant Booking Script 1.0 has SQL Injection via the /service-list city parameter.
CVE-2017-17608Child Care Script 1.0 has SQL Injection via the /list city parameter.
CVE-2017-17607CMS Auditor Website 1.0 has SQL Injection via the PATH_INFO to /news-detail.
CVE-2017-17606Co-work Space Search Script 1.0 has SQL Injection via the /list city parameter.
CVE-2017-17605Consumer Complaints Clone Script 1.0 has SQL Injection via the other-user-profile.php id parameter.
CVE-2017-17604Entrepreneur Bus Booking Script 3.0.4 has SQL Injection via the booker_details.php sourcebus parameter.
CVE-2017-17603Advanced Real Estate Script 4.0.7 has SQL Injection via the search-results.php Projectmain, proj_type, searchtext, sell_...
CVE-2017-17602Advance B2B Script 2.1.3 has SQL Injection via the tradeshow-list-detail.php show_id or view-product.php pid parameter.
CVE-2017-17601Cab Booking Script 1.0 has SQL Injection via the /service-list city parameter.
CVE-2017-17600Basic B2B Script 2.0.8 has SQL Injection via the product_details.php id parameter.
CVE-2017-17599Advance Online Learning Management Script 3.1 has SQL Injection via the courselist.php subcatid or popcourseid parameter...
CVE-2017-17598Affiliate MLM Script 1.0 has SQL Injection via the product-category.php key parameter.
CVE-2017-17597Nearbuy Clone Script 3.2 has SQL Injection via the category_list.php search parameter.
CVE-2017-17596Entrepreneur Job Portal Script 2.0.6 has SQL Injection via the jobsearch_all.php rid1 parameter.
CVE-2017-17595Beauty Parlour Booking Script 1.0 has SQL Injection via the /list gender or city parameter.
CVE-2017-17594DomainSale PHP Script 1.0 has SQL Injection via the domain.php id parameter.
CVE-2017-17593Simple Chatting System 1.0 allows Arbitrary File Upload via view/my_profile.php, which places files under uploads/.
CVE-2017-17592Website Auction Marketplace 2.0.5 has SQL Injection via the search.php cat_id parameter.
CVE-2017-17591Realestate Crowdfunding Script 2.7.2 has SQL Injection via the single-cause.php pid parameter.
CVE-2017-17590CRITICAL9.8FS Stackoverflow Clone 1.0 has SQL Injection via the /question keywords parameter.
CVE-2017-17589CRITICAL9.8FS Thumbtack Clone 1.0 has SQL Injection via the browse-category.php cat parameter or the browse-scategory.php sc parame...
CVE-2017-17588CRITICAL9.8FS IMDB Clone 1.0 has SQL Injection via the movie.php f parameter, tvshow.php s parameter, or show_misc_video.php id par...
CVE-2017-17587CRITICAL9.8FS Indiamart Clone 1.0 has SQL Injection via the catcompany.php token parameter, buyleads-details.php id parameter, or c...
CVE-2017-17586CRITICAL9.8FS Olx Clone 1.0 has SQL Injection via the subpage.php scat parameter or the message.php pid parameter.
CVE-2017-17585CRITICAL9.8FS Monster Clone 1.0 has SQL Injection via the Employer_Details.php id parameter.

Check if your code is affected by 2017 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now