2017 CVE Vulnerabilities
17,105 CVEs published in 2017.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2017-12480 | — | — | 1.0% | Aug 6, 2017 | Sandboxie installer 5071703 has a DLL Hijacking or Unsafe DLL Loading Vulnerability via a Trojan horse dwmapi.dll or pro... |
| CVE-2017-12586 | — | — | 2.7% | Aug 6, 2017 | SLiMS 8 Akasia through 8.3.1 has an arbitrary file reading issue because of directory traversal in the url parameter to ... |
| CVE-2017-12585 | — | — | 1.7% | Aug 6, 2017 | SLiMS 8 Akasia through 8.3.1 has SQL injection in admin/AJAX_lookup_handler.php (tableName and tableFields parameters), ... |
| CVE-2017-12584 | HIGH | 8.8 | 0.9% | Aug 6, 2017 | There is no CSRF mitigation in SLiMS 8 Akasia through 8.3.1. Also, an entire user profile (including the password) can b... |
| CVE-2017-12583 | — | — | 3.3% | Aug 6, 2017 | DokuWiki through 2017-02-19b has XSS in the at parameter (aka the DATE_AT variable) to doku.php. |
| CVE-2017-12581 | — | — | 6.7% | Aug 6, 2017 | GitHub Electron before 1.6.8 allows remote command execution because of a nodeIntegration bypass vulnerability. This als... |
| CVE-2017-12568 | — | — | 1.9% | Aug 6, 2017 | Denial of Service vulnerability in Debut embedded httpd 1.20 in Brother DCP-J132W (and probably other DCP models) allows... |
| CVE-2017-12572 | — | — | 0.5% | Aug 5, 2017 | Persistent Cross Site Scripting (XSS) exists in Splunk Enterprise 6.5.x before 6.5.2, 6.4.x before 6.4.6, and 6.3.x befo... |
| CVE-2017-12566 | — | — | 1.2% | Aug 5, 2017 | In ImageMagick 7.0.6-2, a memory leak vulnerability was found in the function ReadMVGImage in coders/mvg.c, which allows... |
| CVE-2017-12565 | — | — | 1.2% | Aug 5, 2017 | In ImageMagick 7.0.6-2, a memory leak vulnerability was found in the function ReadOneJNGImage in coders/png.c, which all... |
| CVE-2017-12564 | — | — | 1.1% | Aug 5, 2017 | In ImageMagick 7.0.6-2, a memory leak vulnerability was found in the function ReadMATImage in coders/mat.c, which allows... |
| CVE-2017-12563 | — | — | 1.6% | Aug 5, 2017 | In ImageMagick 7.0.6-2, a memory exhaustion vulnerability was found in the function ReadPSDImage in coders/psd.c, which ... |
| CVE-2017-9864 | — | — | 1.5% | Aug 5, 2017 | An issue was discovered in SMA Solar Technology products. An attacker can change the plant time even when not authentica... |
| CVE-2017-9863 | — | — | 0.7% | Aug 5, 2017 | An issue was discovered in SMA Solar Technology products. If a user simultaneously has Sunny Explorer running and visits... |
| CVE-2017-9862 | — | — | 1.7% | Aug 5, 2017 | An issue was discovered in SMA Solar Technology products. When signed into Sunny Explorer with a wrong password, it is p... |
| CVE-2017-9861 | — | — | 1.4% | Aug 5, 2017 | An issue was discovered in SMA Solar Technology products. The SIP implementation does not properly use authentication wi... |
| CVE-2017-9860 | — | — | 2.2% | Aug 5, 2017 | An issue was discovered in SMA Solar Technology products. An attacker can use Sunny Explorer or the SMAdata2+ network pr... |
| CVE-2017-9859 | — | — | 1.1% | Aug 5, 2017 | An issue was discovered in SMA Solar Technology products. The inverters make use of a weak hashing algorithm to encrypt ... |
| CVE-2017-9858 | — | — | 2.1% | Aug 5, 2017 | An issue was discovered in SMA Solar Technology products. By sending crafted packets to an inverter and observing the re... |
| CVE-2017-9857 | — | — | 0.7% | Aug 5, 2017 | An issue was discovered in SMA Solar Technology products. The SMAdata2+ communication protocol does not properly use aut... |
| CVE-2017-9856 | LOW | 3.4 | 0.7% | Aug 5, 2017 | An issue was discovered in SMA Solar Technology products. Sniffed passwords from SMAdata2+ communication can be decrypte... |
| CVE-2017-9855 | CRITICAL | 9.8 | 1.6% | Aug 5, 2017 | An issue was discovered in SMA Solar Technology products. A secondary authentication system is available for Installers ... |
| CVE-2017-9854 | — | — | 1.1% | Aug 5, 2017 | An issue was discovered in SMA Solar Technology products. By sniffing for specific packets on the localhost, plaintext p... |
| CVE-2017-9853 | — | — | 1.7% | Aug 5, 2017 | An issue was discovered in SMA Solar Technology products. All inverters have a very weak password policy for the user an... |
| CVE-2017-9852 | — | — | 1.7% | Aug 5, 2017 | An Incorrect Password Management issue was discovered in SMA Solar Technology products. Default passwords exist that are... |
Check if your code is affected by 2017 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now