2017 CVE Vulnerabilities
17,105 CVEs published in 2017.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2017-10669 | — | — | 0.5% | Jun 30, 2017 | Signature Wrapping exists in OSCI-Transport 1.2 as used in OSCI Transport Library 1.6.1 (Java) and OSCI Transport Librar... |
| CVE-2017-10668 | — | — | 0.3% | Jun 30, 2017 | A Padding Oracle exists in OSCI-Transport 1.2 as used in OSCI Transport Library 1.6.1 (Java) and OSCI Transport Library ... |
| CVE-2017-7905 | — | — | 1.3% | Jun 30, 2017 | A Weak Cryptography for Passwords issue was discovered in General Electric (GE) Multilin SR 750 Feeder Protection Relay,... |
| CVE-2017-7903 | CRITICAL | 9.8 | 2.7% | Jun 30, 2017 | A Weak Password Requirements issue was discovered in Rockwell Automation Allen-Bradley MicroLogix 1100 programmable-logi... |
| CVE-2017-7902 | — | — | 2.6% | Jun 30, 2017 | A "Reusing a Nonce, Key Pair in Encryption" issue was discovered in Rockwell Automation Allen-Bradley MicroLogix 1100 pr... |
| CVE-2017-7901 | — | — | 6.6% | Jun 30, 2017 | A Predictable Value Range from Previous Values issue was discovered in Rockwell Automation Allen-Bradley MicroLogix 1100... |
| CVE-2017-7899 | — | — | 4.6% | Jun 30, 2017 | An Information Exposure issue was discovered in Rockwell Automation Allen-Bradley MicroLogix 1100 programmable-logic con... |
| CVE-2017-7898 | CRITICAL | 9.8 | 5.1% | Jun 30, 2017 | An Improper Restriction of Excessive Authentication Attempts issue was discovered in Rockwell Automation Allen-Bradley M... |
| CVE-2017-6046 | — | — | 1.6% | Jun 30, 2017 | An Insufficiently Protected Credentials issue was discovered in Sierra Wireless AirLink Raven XE, all versions prior to ... |
| CVE-2017-6044 | — | — | 4.3% | Jun 30, 2017 | An Improper Authorization issue was discovered in Sierra Wireless AirLink Raven XE, all versions prior to 4.0.14, and Ai... |
| CVE-2017-6042 | — | — | 0.6% | Jun 30, 2017 | A Cross-Site Request Forgery issue was discovered in Sierra Wireless AirLink Raven XE, all versions prior to 4.0.14, and... |
| CVE-2017-6041 | — | — | 1.8% | Jun 30, 2017 | An Unrestricted Upload issue was discovered in Marel Food Processing Systems M3000 terminal associated with the followin... |
| CVE-2017-6040 | — | — | 0.9% | Jun 30, 2017 | An Information Exposure issue was discovered in Belden Hirschmann GECKO Lite Managed switch, Version 2.0.00 and prior ve... |
| CVE-2017-6038 | — | — | 0.4% | Jun 30, 2017 | A Cross-Site Request Forgery issue was discovered in Belden Hirschmann GECKO Lite Managed switch, Version 2.0.00 and pri... |
| CVE-2017-6036 | — | — | 0.9% | Jun 30, 2017 | A Server-Side Request Forgery issue was discovered in Belden Hirschmann GECKO Lite Managed switch, Version 2.0.00 and pr... |
| CVE-2017-6034 | CRITICAL | 9.8 | 5.1% | Jun 30, 2017 | An authentication bypass by capture-replay issue was discovered in Schneider Electric Modicon Modbus Protocol. Sensitive... |
| CVE-2017-6032 | — | — | 1.7% | Jun 30, 2017 | A Violation of Secure Design Principles issue was discovered in Schneider Electric Modicon Modbus Protocol. The Modicon ... |
| CVE-2017-6030 | MEDIUM | 6.5 | 2.1% | Jun 30, 2017 | A predictable value range from previous values issue was discovered in Schneider Electric Modicon PLCs Modicon M221, fir... |
| CVE-2017-6028 | CRITICAL | 9.8 | 2.3% | Jun 30, 2017 | An Insufficiently Protected Credentials issue was discovered in Schneider Electric Modicon PLCs Modicon M241, all firmwa... |
| CVE-2017-6026 | CRITICAL | 9.1 | 31.8% | Jun 30, 2017 | A Use of Insufficiently Random Values issue was discovered in Schneider Electric Modicon PLCs Modicon M241, firmware ver... |
| CVE-2017-6022 | — | — | 1.8% | Jun 30, 2017 | A hard-coded password issue was discovered in Becton, Dickinson and Company (BD) PerformA, Version 2.0.14.0 and prior ve... |
| CVE-2017-6018 | — | — | 1.0% | Jun 30, 2017 | An open redirect issue was discovered in B. Braun Medical SpaceCom module, which is integrated into the SpaceStation doc... |
| CVE-2017-6017 | — | — | 4.8% | Jun 30, 2017 | A Resource Exhaustion issue was discovered in Schneider Electric Modicon M340 PLC BMXNOC0401, BMXNOE0100, BMXNOE0110, BM... |
| CVE-2017-10688 | — | — | 6.7% | Jun 29, 2017 | In LibTIFF 4.0.8, there is a assertion abort in the TIFFWriteDirectoryTagCheckedLong8Array function in tif_dirwrite.c. A... |
| CVE-2017-10687 | — | — | 1.8% | Jun 29, 2017 | In LibSass 3.4.5, there is a heap-based buffer over-read in the function json_mkstream() in sass_context.cpp. A crafted ... |
Check if your code is affected by 2017 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now