2017 CVE Vulnerabilities
17,105 CVEs published in 2017.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2017-14956 | — | — | 1.9% | Oct 18, 2017 | AlienVault USM v5.4.2 and earlier offers authenticated users the functionality of exporting generated reports via the "/... |
| CVE-2017-14322 | — | — | 36.5% | Oct 18, 2017 | The function in charge to check whether the user is already logged in init.php in Interspire Email Marketer (IEM) prior ... |
| CVE-2017-8022 | — | — | 3.2% | Oct 18, 2017 | An issue was discovered in EMC NetWorker (prior to 8.2.4.9, all supported 9.0.x versions, prior to 9.1.1.3, prior to 9.2... |
| CVE-2017-13083 | MEDIUM | 5.3 | 1.0% | Oct 18, 2017 | Akeo Consulting Rufus prior to version 2.17.1187 does not adequately validate the integrity of updates downloaded over H... |
| CVE-2017-8024 | — | — | 0.6% | Oct 18, 2017 | EMC Isilon OneFS (versions prior to 8.1.0.1, versions prior to 8.0.1.2, versions prior to 8.0.0.6, version 7.2.1.x) is i... |
| CVE-2017-15596 | — | — | 0.4% | Oct 18, 2017 | An issue was discovered in Xen 4.4.x through 4.9.x allowing ARM guest OS users to cause a denial of service (prevent phy... |
| CVE-2017-15595 | — | — | 1.5% | Oct 18, 2017 | An issue was discovered in Xen through 4.9.x allowing x86 PV guest OS users to cause a denial of service (unbounded recu... |
| CVE-2017-15594 | — | — | 0.4% | Oct 18, 2017 | An issue was discovered in Xen through 4.9.x allowing x86 SVM PV guest OS users to cause a denial of service (hypervisor... |
| CVE-2017-15593 | — | — | 0.4% | Oct 18, 2017 | An issue was discovered in Xen through 4.9.x allowing x86 PV guest OS users to cause a denial of service (memory leak) b... |
| CVE-2017-15592 | — | — | 0.4% | Oct 18, 2017 | An issue was discovered in Xen through 4.9.x allowing x86 HVM guest OS users to cause a denial of service (hypervisor cr... |
| CVE-2017-15591 | — | — | 0.3% | Oct 18, 2017 | An issue was discovered in Xen 4.5.x through 4.9.x allowing attackers (who control a stub domain kernel or tool stack) t... |
| CVE-2017-15590 | — | — | 0.4% | Oct 18, 2017 | An issue was discovered in Xen through 4.9.x allowing x86 guest OS users to cause a denial of service (hypervisor crash)... |
| CVE-2017-15589 | — | — | 0.4% | Oct 18, 2017 | An issue was discovered in Xen through 4.9.x allowing x86 HVM guest OS users to obtain sensitive information from the ho... |
| CVE-2017-15588 | — | — | 0.3% | Oct 18, 2017 | An issue was discovered in Xen through 4.9.x allowing x86 PV guest OS users to execute arbitrary code on the host OS bec... |
| CVE-2017-15587 | — | — | 1.0% | Oct 18, 2017 | An integer overflow was discovered in pdf_read_new_xref_section in pdf/pdf-xref.c in Artifex MuPDF 1.11. |
| CVE-2017-15583 | — | — | 1.3% | Oct 18, 2017 | The embedded web server on ABB Fox515T 1.0 devices is vulnerable to Local File Inclusion. It accepts a parameter that sp... |
| CVE-2017-15579 | — | — | 1.5% | Oct 18, 2017 | In PHPSUGAR PHP Melody before 2.7.3, SQL Injection exists via an aa_pages_per_page cookie in a playlist action to watch.... |
| CVE-2017-15578 | — | — | 1.3% | Oct 18, 2017 | In PHPSUGAR PHP Melody before 2.7.3, SQL Injection exists via the image parameter to admin/edit_category.php. |
| CVE-2017-15577 | — | — | 1.6% | Oct 18, 2017 | Redmine before 3.2.6 and 3.3.x before 3.3.3 mishandles the rendering of wiki links, which allows remote attackers to obt... |
| CVE-2017-15576 | — | — | 1.6% | Oct 18, 2017 | Redmine before 3.2.6 and 3.3.x before 3.3.3 mishandles Time Entry rendering in activity views, which allows remote attac... |
| CVE-2017-15575 | — | — | 1.3% | Oct 18, 2017 | In Redmine before 3.2.6 and 3.3.x before 3.3.3, Redmine.pm lacks a check for whether the Repository module is enabled in... |
| CVE-2017-15574 | — | — | 1.1% | Oct 18, 2017 | In Redmine before 3.2.6 and 3.3.x before 3.3.3, stored XSS is possible by using an SVG document as an attachment. |
| CVE-2017-15573 | — | — | 1.1% | Oct 18, 2017 | In Redmine before 3.2.6 and 3.3.x before 3.3.3, XSS exists because markup is mishandled in wiki content. |
| CVE-2017-15572 | — | — | 2.4% | Oct 18, 2017 | In Redmine before 3.2.6 and 3.3.x before 3.3.3, remote attackers can obtain sensitive information (password reset tokens... |
| CVE-2017-15571 | — | — | 1.2% | Oct 18, 2017 | In Redmine before 3.2.8, 3.3.x before 3.3.5, and 3.4.x before 3.4.3, XSS exists in app/views/issues/_list.html.erb via c... |
Check if your code is affected by 2017 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now