2017 CVE Vulnerabilities
17,105 CVEs published in 2017.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2017-9338 | MEDIUM | 5.4 | 0.6% | Jul 17, 2017 | Inadequate escaping lead to XSS vulnerability in the search module in ownCloud Server before 8.2.12, 9.0.x before 9.0.10... |
| CVE-2017-8896 | — | — | 1.2% | Jul 17, 2017 | ownCloud Server before 8.2.12, 9.0.x before 9.0.10, 9.1.x before 9.1.6, and 10.0.x before 10.0.2 are vulnerable to XSS o... |
| CVE-2017-7947 | — | — | 1.3% | Jul 17, 2017 | NetApp Clustered Data ONTAP before 8.3.2P11, 9.0 before P4, and 9.1 before P5 allow attackers to obtain sensitive passwo... |
| CVE-2017-6744 | HIGH | 8.8 | 7.2% | Jul 17, 2017 | The Simple Network Management Protocol (SNMP) subsystem of Cisco IOS and IOS XE Software contains multiple vulnerabiliti... |
| CVE-2017-6743 | HIGH | 8.8 | 10.5% | Jul 17, 2017 | The Simple Network Management Protocol (SNMP) subsystem of Cisco IOS and IOS XE Software contains multiple vulnerabiliti... |
| CVE-2017-6742 | HIGH | 8.8 | 21.4% | Jul 17, 2017 | A vulnerability in the SNMP implementation of could allow an authenticated, remote attacker to cause a reload of the aff... |
| CVE-2017-6741 | HIGH | 8.8 | 6.3% | Jul 17, 2017 | A vulnerability in the SNMP implementation of could allow an authenticated, remote attacker to cause a reload of the aff... |
| CVE-2017-6740 | HIGH | 8.8 | 10.8% | Jul 17, 2017 | The Simple Network Management Protocol (SNMP) subsystem of Cisco IOS and IOS XE Software contains multiple vulnerabiliti... |
| CVE-2017-6739 | HIGH | 8.8 | 10.5% | Jul 17, 2017 | A vulnerability in the SNMP implementation of could allow an authenticated, remote attacker to cause a reload of the aff... |
| CVE-2017-6738 | HIGH | 8.8 | 10.5% | Jul 17, 2017 | The Simple Network Management Protocol (SNMP) subsystem of Cisco IOS and IOS XE Software contains multiple vulnerabiliti... |
| CVE-2017-6737 | HIGH | 8.8 | 42.6% | Jul 17, 2017 | A vulnerability in the SNMP implementation of could allow an authenticated, remote attacker to cause a reload of the aff... |
| CVE-2017-6736 | HIGH | 8.8 | 70.6% | Jul 17, 2017 | The Simple Network Management Protocol (SNMP) subsystem of Cisco IOS and IOS XE Software contains multiple vulnerabiliti... |
| CVE-2017-9639 | — | — | 2.0% | Jul 17, 2017 | An issue was discovered in Fuji Electric V-Server Version 3.3.22.0 and prior. A memory corruption vulnerability has been... |
| CVE-2017-3754 | — | — | 0.3% | Jul 17, 2017 | Some Lenovo brand notebook systems do not have write protections properly configured in the system BIOS. This could enab... |
| CVE-2017-3742 | — | — | 0.5% | Jul 17, 2017 | In Lenovo Connect2 versions earlier than 4.2.5.4885 for Windows and 4.2.5.3071 for Android, when an ad-hoc connection is... |
| CVE-2017-11399 | — | — | 1.6% | Jul 17, 2017 | Integer overflow in the ape_decode_frame function in libavcodec/apedec.c in FFmpeg 2.4 through 3.3.2 allows remote attac... |
| CVE-2017-11128 | — | — | 0.6% | Jul 17, 2017 | Bolt CMS 3.2.14 allows stored XSS via text input, as demonstrated by the Title field of a New Entry. |
| CVE-2017-11127 | — | — | 0.6% | Jul 17, 2017 | Bolt CMS 3.2.14 allows stored XSS by uploading an SVG document with a "Content-Type: image/svg+xml" header. |
| CVE-2017-7532 | — | — | 0.9% | Jul 17, 2017 | In Moodle 3.x, course creators are able to change system default settings for courses. |
| CVE-2017-7531 | — | — | 0.9% | Jul 17, 2017 | In Moodle 3.3, the course overview block reveals activities in hidden courses. |
| CVE-2017-2642 | — | — | 1.1% | Jul 17, 2017 | Moodle 3.x has user fullname disclosure on the user preferences page. |
| CVE-2017-11361 | — | — | 1.2% | Jul 17, 2017 | Inteno routers have a JUCI ACL misconfiguration that allows the "user" account to read files, write to files, and add ro... |
| CVE-2017-10987 | — | — | 2.0% | Jul 17, 2017 | An FR-GV-304 issue in FreeRADIUS 3.x before 3.0.15 allows "DHCP - Buffer over-read in fr_dhcp_decode_suboptions()" and a... |
| CVE-2017-10986 | — | — | 2.0% | Jul 17, 2017 | An FR-GV-303 issue in FreeRADIUS 3.x before 3.0.15 allows "DHCP - Infinite read in dhcp_attr2vp()" and a denial of servi... |
| CVE-2017-10985 | — | — | 2.2% | Jul 17, 2017 | An FR-GV-302 issue in FreeRADIUS 3.x before 3.0.15 allows "Infinite loop and memory exhaustion with 'concat' attributes"... |
Check if your code is affected by 2017 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now