2017 CVE Vulnerabilities

17,105 CVEs published in 2017.

CVE IDSeverityCVSSDescription
CVE-2017-13996A Relative Path Traversal issue was discovered in LOYTEC LVIS-3ME versions prior to 6.2.0. The web user interface fails ...
CVE-2017-13994A Cross-site Scripting issue was discovered in LOYTEC LVIS-3ME versions prior to 6.2.0. The web interface lacks proper w...
CVE-2017-13992An Insufficient Entropy issue was discovered in LOYTEC LVIS-3ME versions prior to 6.2.0. The application does not utiliz...
CVE-2017-12732A Stack-based Buffer Overflow issue was discovered in GE CIMPLICITY Versions 9.0 and prior. A function reads a packet to...
CVE-2017-2920HIGH7.8An memory corruption vulnerability exists in the .SVG parsing functionality of Computerinsel Photoline 20.02. A speciall...
CVE-2017-2880HIGH7.8An memory corruption vulnerability exists in the .GIF parsing functionality of Computerinsel Photoline 20.02. A speciall...
CVE-2017-12106HIGH8.8A memory corruption vulnerability exists in the .TGA parsing functionality of Computerinsel Photoline 20.02. A specially...
CVE-2017-1522IBM Content Navigator & CMIS 2.0.3, 3.0.0, and 3.0.1 is vulnerable to cross-site scripting. This vulnerability allows us...
CVE-2017-1378IBM Spectrum Protect 7.1 and 8.1 (formerly Tivoli Storage Manager) disclosed unencrypted login credentials to Vmware vCe...
CVE-2017-1339IBM Spectrum Protect 7.1 and 8.1 (formerly Tivoli Storage Manager) Server uses weak encryption for the password. A datab...
CVE-2017-1301IBM Spectrum Protect 7.1 and 8.1 could allow a local attacker to launch a symlink attack. IBM Spectrum Protect Backup-ar...
CVE-2017-1201IBM BigFix Compliance Analytics 1.9.79 (TEMA SUAv1 SCA SCM) stores user credentials in clear text which can be read by a...
CVE-2017-14354A remote cross-site scripting vulnerability in HP UCMDB Foundation Software versions 10.10, 10.11, 10.20, 10.21, 10.22, ...
CVE-2017-14353A remote code execution vulnerability in HP UCMDB Foundation Software versions 10.10, 10.11, 10.20, 10.21, 10.22, 10.30,...
CVE-2017-15037In FreeBSD through 11.1, the smb_strdupin function in sys/netsmb/smb_subr.c has a race condition with a resultant out-of...
CVE-2017-15035EmTec PyroBatchFTP before 3.18 allows remote servers to cause a denial of service (application crash).
CVE-2017-15033ImageMagick version 7.0.7-2 contains a memory leak in ReadYUVImage in coders/yuv.c.
CVE-2017-15032ImageMagick version 7.0.7-2 contains a memory leak in ReadYCBCRImage in coders/ycbcr.c.
CVE-2017-12270A vulnerability in the gRPC code of Cisco IOS XR Software for Cisco Network Convergence System (NCS) 5500 Series Routers...
CVE-2017-12269A vulnerability in the web UI of Cisco Spark Messaging Software could allow an authenticated, remote attacker to perform...
CVE-2017-12268A vulnerability in the Network Access Manager (NAM) of Cisco AnyConnect Secure Mobility Client could allow an authentica...
CVE-2017-12267A vulnerability in the Independent Computing Architecture (ICA) accelerator feature for the Cisco Wide Area Application ...
CVE-2017-12266A vulnerability in the routine that loads DLL files in Cisco Meeting App for Windows could allow an authenticated, local...
CVE-2017-12265A vulnerability in the web-based management interface of Cisco Adaptive Security Appliance (ASA) Software could allow an...
CVE-2017-12264A vulnerability in the Web Admin Interface of Cisco Meeting Server could allow an unauthenticated, remote attacker to ca...

Check if your code is affected by 2017 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now