2017 CVE Vulnerabilities

17,105 CVEs published in 2017.

CVE IDSeverityCVSSDescription
CVE-2017-4990In EMC Avamar Server Software 7.4.1-58, 7.4.0-242, 7.3.1-125, 7.3.0-233, 7.3.0-226, an unauthorized attacker may leverag...
CVE-2017-4989In EMC Avamar Server Software 7.3.1-125, 7.3.0-233, 7.3.0-226, 7.2.1-32, 7.2.1-31, 7.2.0-401, an unauthenticated remote ...
CVE-2017-4988EMC Isilon OneFS 8.0.1.0, 8.0.0 - 8.0.0.3, 7.2.0 - 7.2.1.4, 7.1.x is affected by a privilege escalation vulnerability th...
CVE-2017-3219Acronis True Image up to and including version 2017 Build 8053 performs software updates using HTTP. Downloaded updates ...
CVE-2017-3218Samsung Magician 5.0 fails to validate TLS certificates for HTTPS software update traffic. Prior to version 5.0, Samsung...
CVE-2017-7922An Improper Privilege Management issue was discovered in Cambium Networks ePMP. The privileges for SNMP community string...
CVE-2017-7918An Improper Access Control issue was discovered in Cambium Networks ePMP. After a valid user has used SNMP configuration...
CVE-2017-6053A Cross-Site Scripting issue was discovered in Trihedral VTScada Versions prior to 11.2.26. A cross-site scripting vulne...
CVE-2017-6050A SQL Injection issue was discovered in Ecava IntegraXor Versions 5.2.1231.0 and prior. The application fails to properl...
CVE-2017-6045An Information Exposure issue was discovered in Trihedral VTScada Versions prior to 11.2.26. Some files are exposed with...
CVE-2017-6043A Resource Consumption issue was discovered in Trihedral VTScada Versions prior to 11.2.26. The client does not properly...
CVE-2017-2813HIGH8.8An exploitable integer overflow vulnerability exists in the JPEG 2000 parser functionality of IrfanView 4.44. A speciall...
CVE-2017-9781A cross site scripting (XSS) vulnerability exists in Check_MK versions 1.4.0x prior to 1.4.0p6, allowing an unauthentica...
CVE-2017-9774Remote Code Execution was found in Horde_Image 2.x before 2.5.0 via a crafted GET request. Exploitation requires authent...
CVE-2017-9773Denial of Service was found in Horde_Image 2.x before 2.5.0 via a crafted URL to the "Null" image driver.
CVE-2017-1304MEDIUM6.2IBM has identified a vulnerability with IBM Spectrum Scale/GPFS utilized on the Elastic Storage Server (ESS)/GPFS Storag...
CVE-2017-1117IBM WebSphere MQ 8.0 and 9.0 could allow an authenticated user to cause a denial of service to the MQXR channel when tra...
CVE-2017-9780In Flatpak before 0.8.7, a third-party app repository could include malicious apps that contain files with inappropriate...
CVE-2017-2831HIGH7.5An exploitable buffer overflow vulnerability exists in the web management interface used by the Foscam C1 Indoor HD Came...
CVE-2017-2830HIGH7.5An exploitable buffer overflow vulnerability exists in the web management interface used by the Foscam C1 Indoor HD Came...
CVE-2017-2829MEDIUM6.5An exploitable directory traversal vulnerability exists in the web management interface used by the Foscam C1 Indoor HD ...
CVE-2017-2828HIGH8.8An exploitable command injection vulnerability exists in the web management interface used by the Foscam C1 Indoor HD Ca...
CVE-2017-2827HIGH8.8An exploitable command injection vulnerability exists in the web management interface used by the Foscam C1 Indoor HD Ca...
CVE-2017-2805CRITICAL9.8An exploitable stack-based buffer overflow vulnerability exists in the web management interface used by the Foscam C1 In...
CVE-2017-9778GNU Debugger (GDB) 8.0 and earlier fails to detect a negative length field in a DWARF section. A malformed section in an...

Check if your code is affected by 2017 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now