2017 CVE Vulnerabilities

17,104 CVEs published in 2017.

CVE IDSeverityCVSSDescription
CVE-2017-17463Vivo modems allow remote attackers to obtain sensitive information by reading the index.cgi?page=wifi HTML source code, ...
CVE-2017-17461Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. ...
CVE-2017-14386The web user interface of Dell 2335dn and 2355dn Multifunction Laser Printers, firmware versions prior to V2.70.06.26 A1...
CVE-2017-1000410The Linux kernel version 3.3-rc1 and later is affected by a vulnerability lies in the processing of incoming L2CAP comma...
CVE-2017-17459http_transport.c in Fossil before 2.4, when the SSH sync protocol is used, allows user-assisted remote attackers to exec...
CVE-2017-17458In Mercurial before 4.4.1, it is possible that a specially malformed repository can cause Git subrepositories to run arb...
CVE-2017-11937The Microsoft Malware Protection Engine running on Microsoft Forefront and Microsoft Defender on Windows 7 SP1, Windows ...
CVE-2017-3738MEDIUM5.9There is an overflow bug in the AVX2 Montgomery multiplication procedure used in exponentiation with 1024-bit moduli. No...
CVE-2017-3737OpenSSL 1.0.2 (starting from version 1.0.2b) introduced an "error state" mechanism. The intent was that if a fatal error...
CVE-2017-1498IBM Connections 5.5 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript...
CVE-2017-1497IBM Sterling File Gateway 2.2 could allow an unauthorized user to view files they should not have access to providing th...
CVE-2017-1487IBM Sterling File Gateway 2.2 could allow an authenticated attacker to obtain sensitive information such as login ids on...
CVE-2017-1482IBM Sterling B2B Integrator Standard Edition 5.2 is vulnerable to cross-site scripting. This vulnerability allows users ...
CVE-2017-1481IBM Sterling B2B Integrator Standard Edition 5.2 allows a user to view sensitive information that belongs to another use...
CVE-2017-1465IBM TRIRIGA 3.2, 3.3, 3.4, and 3.5 could allow a remote attacker to hijack the clicking action of the victim. By persuad...
CVE-2017-1433IBM WebSphere MQ 7.5, 8.0, and 9.0 could allow an authenticated user to insert messages with a corrupt RFH header into t...
CVE-2017-1356IBM Atlas eDiscovery Process Management 6.0.3 is vulnerable to SQL injection. A remote attacker could send specially-cra...
CVE-2017-1355IBM Atlas eDiscovery Process Management 6.0.3 stores sensitive information in URL parameters. This may lead to informati...
CVE-2017-1354IBM Atlas eDiscovery Process Management 6.0.3 is vulnerable to cross-site scripting. This vulnerability allows users to ...
CVE-2017-1353IBM Atlas eDiscovery Process Management 6.0.3 could allow an authenticated attacker to obtain sensitive information when...
CVE-2017-1342IBM Insights Foundation for Energy 2.0 could reveal sensitive information in error messages to authenticated users that ...
CVE-2017-1341IBM WebSphere MQ 8.0 and 9.0 could allow, under special circumstances, an unauthorized user to access an object which th...
CVE-2017-1336IBM Infosphere BigInsights 4.2.0 could allow an attacker to inject code that could allow access to restricted data and f...
CVE-2017-1271IBM Security Guardium 9.0, 9.1, and 9.5 supports interaction between multiple actors and allows those actors to negotiat...
CVE-2017-17457Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2017-14246. Reason: This candidate is a duplicate of ...

Check if your code is affected by 2017 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now