2017 CVE Vulnerabilities
17,105 CVEs published in 2017.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2017-13996 | — | — | 2.8% | Oct 5, 2017 | A Relative Path Traversal issue was discovered in LOYTEC LVIS-3ME versions prior to 6.2.0. The web user interface fails ... |
| CVE-2017-13994 | — | — | 0.9% | Oct 5, 2017 | A Cross-site Scripting issue was discovered in LOYTEC LVIS-3ME versions prior to 6.2.0. The web interface lacks proper w... |
| CVE-2017-13992 | — | — | 3.5% | Oct 5, 2017 | An Insufficient Entropy issue was discovered in LOYTEC LVIS-3ME versions prior to 6.2.0. The application does not utiliz... |
| CVE-2017-12732 | — | — | 0.8% | Oct 5, 2017 | A Stack-based Buffer Overflow issue was discovered in GE CIMPLICITY Versions 9.0 and prior. A function reads a packet to... |
| CVE-2017-2920 | HIGH | 7.8 | 1.8% | Oct 5, 2017 | An memory corruption vulnerability exists in the .SVG parsing functionality of Computerinsel Photoline 20.02. A speciall... |
| CVE-2017-2880 | HIGH | 7.8 | 1.4% | Oct 5, 2017 | An memory corruption vulnerability exists in the .GIF parsing functionality of Computerinsel Photoline 20.02. A speciall... |
| CVE-2017-12106 | HIGH | 8.8 | 1.8% | Oct 5, 2017 | A memory corruption vulnerability exists in the .TGA parsing functionality of Computerinsel Photoline 20.02. A specially... |
| CVE-2017-1522 | — | — | 0.5% | Oct 5, 2017 | IBM Content Navigator & CMIS 2.0.3, 3.0.0, and 3.0.1 is vulnerable to cross-site scripting. This vulnerability allows us... |
| CVE-2017-1378 | — | — | 0.3% | Oct 5, 2017 | IBM Spectrum Protect 7.1 and 8.1 (formerly Tivoli Storage Manager) disclosed unencrypted login credentials to Vmware vCe... |
| CVE-2017-1339 | — | — | 0.2% | Oct 5, 2017 | IBM Spectrum Protect 7.1 and 8.1 (formerly Tivoli Storage Manager) Server uses weak encryption for the password. A datab... |
| CVE-2017-1301 | — | — | 0.4% | Oct 5, 2017 | IBM Spectrum Protect 7.1 and 8.1 could allow a local attacker to launch a symlink attack. IBM Spectrum Protect Backup-ar... |
| CVE-2017-1201 | — | — | 0.3% | Oct 5, 2017 | IBM BigFix Compliance Analytics 1.9.79 (TEMA SUAv1 SCA SCM) stores user credentials in clear text which can be read by a... |
| CVE-2017-14354 | — | — | 1.2% | Oct 5, 2017 | A remote cross-site scripting vulnerability in HP UCMDB Foundation Software versions 10.10, 10.11, 10.20, 10.21, 10.22, ... |
| CVE-2017-14353 | — | — | 4.7% | Oct 5, 2017 | A remote code execution vulnerability in HP UCMDB Foundation Software versions 10.10, 10.11, 10.20, 10.21, 10.22, 10.30,... |
| CVE-2017-15037 | — | — | 1.1% | Oct 5, 2017 | In FreeBSD through 11.1, the smb_strdupin function in sys/netsmb/smb_subr.c has a race condition with a resultant out-of... |
| CVE-2017-15035 | — | — | 5.6% | Oct 5, 2017 | EmTec PyroBatchFTP before 3.18 allows remote servers to cause a denial of service (application crash). |
| CVE-2017-15033 | — | — | 1.7% | Oct 5, 2017 | ImageMagick version 7.0.7-2 contains a memory leak in ReadYUVImage in coders/yuv.c. |
| CVE-2017-15032 | — | — | 1.5% | Oct 5, 2017 | ImageMagick version 7.0.7-2 contains a memory leak in ReadYCBCRImage in coders/ycbcr.c. |
| CVE-2017-12270 | — | — | 2.3% | Oct 5, 2017 | A vulnerability in the gRPC code of Cisco IOS XR Software for Cisco Network Convergence System (NCS) 5500 Series Routers... |
| CVE-2017-12269 | — | — | 0.9% | Oct 5, 2017 | A vulnerability in the web UI of Cisco Spark Messaging Software could allow an authenticated, remote attacker to perform... |
| CVE-2017-12268 | — | — | 0.4% | Oct 5, 2017 | A vulnerability in the Network Access Manager (NAM) of Cisco AnyConnect Secure Mobility Client could allow an authentica... |
| CVE-2017-12267 | — | — | 1.6% | Oct 5, 2017 | A vulnerability in the Independent Computing Architecture (ICA) accelerator feature for the Cisco Wide Area Application ... |
| CVE-2017-12266 | — | — | 0.4% | Oct 5, 2017 | A vulnerability in the routine that loads DLL files in Cisco Meeting App for Windows could allow an authenticated, local... |
| CVE-2017-12265 | — | — | 1.2% | Oct 5, 2017 | A vulnerability in the web-based management interface of Cisco Adaptive Security Appliance (ASA) Software could allow an... |
| CVE-2017-12264 | — | — | 2.2% | Oct 5, 2017 | A vulnerability in the Web Admin Interface of Cisco Meeting Server could allow an unauthenticated, remote attacker to ca... |
Check if your code is affected by 2017 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now