2017 CVE Vulnerabilities

17,105 CVEs published in 2017.

CVE IDSeverityCVSSDescription
CVE-2017-10619HIGH7.5When Express Path (formerly known as service offloading) is configured on Juniper Networks SRX1400, SRX3400, SRX3600, SR...
CVE-2017-10618MEDIUM5.9When the 'bgp-error-tolerance' feature â€" designed to help mitigate remote session resets from malformed path...
CVE-2017-10617MEDIUM5The ifmap service that comes bundled with Contrail has an XML External Entity (XXE) vulnerability that may allow an atta...
CVE-2017-10616MEDIUM5.3The ifmap service that comes bundled with Juniper Networks Contrail releases uses hard coded credentials. Affected relea...
CVE-2017-10615CRITICAL9.8A vulnerability in the pluggable authentication module (PAM) of Juniper Networks Junos OS may allow an unauthenticated n...
CVE-2017-10614MEDIUM5.3A vulnerability in telnetd service on Junos OS allows a remote attacker to cause a limited memory and/or CPU consumption...
CVE-2017-10613MEDIUM5.5A vulnerability in a specific loopback filter action command, processed in a specific logical order of operation, in a r...
CVE-2017-10612HIGH8A persistent site scripting vulnerability in Juniper Networks Junos Space allows users who can change certain configurat...
CVE-2017-10611MEDIUM6.5If extended statistics are enabled via 'set chassis extended-statistics', when executing any operation that fetches inte...
CVE-2017-10610HIGH7.5On SRX Series devices, a crafted ICMP packet embedded within a NAT64 IPv6 to IPv4 tunnel may cause the flowd process to ...
CVE-2017-10608HIGH7.5Any Juniper Networks SRX series device with one or more ALGs enabled may experience a flowd crash when traffic is proces...
CVE-2017-10607HIGH7.5Juniper Networks Junos OS 16.1R1, and services releases based off of 16.1R1, are vulnerable to the receipt of a crafted ...
CVE-2017-10606MEDIUM4.4Version 4.40 of the TPM (Trusted Platform Module) firmware on Juniper Networks SRX300 Series has a weakness in generatin...
CVE-2017-15276OpenText Documentum Content Server (formerly EMC Documentum Content Server) through 7.3 contains the following design ga...
CVE-2017-15014OpenText Documentum Content Server (formerly EMC Documentum Content Server) through 7.3 contains the following design ga...
CVE-2017-15013OpenText Documentum Content Server (formerly EMC Documentum Content Server) through 7.3 contains the following design ga...
CVE-2017-15012OpenText Documentum Content Server (formerly EMC Documentum Content Server) through 7.3 does not properly validate the i...
CVE-2017-8727Microsoft Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1 and RT 8.1, Windows Server 2012 and R2, Windows...
CVE-2017-8726Microsoft Edge in Microsoft Windows 10 Gold, 1511, 1607, 1703, and Windows Server 2016 allows an attacker to execute arb...
CVE-2017-8718The Microsoft JET Database Engine in Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1 and RT 8.1, Windows ...
CVE-2017-8717The Microsoft JET Database Engine in Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1 and RT 8.1, Windows ...
CVE-2017-8715The Microsoft Device Guard on Microsoft Windows 10 Gold, 1511, 1607, and 1703, and Windows Server 2016 allows a security...
CVE-2017-8703The Microsoft Windows Subsystem for Linux on Microsoft Windows 10 1703 allows a denial of service vulnerability when it ...
CVE-2017-8694The Microsoft Windows Kernel Mode Driver on Microsoft Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Wi...
CVE-2017-8693The Microsoft Graphics Component on Microsoft Windows 10 Gold, 1511, 1607, and 1703, and Windows Server 2016 allows an i...

Check if your code is affected by 2017 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now