2017 CVE Vulnerabilities
17,105 CVEs published in 2017.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2017-4972 | HIGH | 7.5 | 1.1% | Jun 13, 2017 | An issue was discovered in Cloud Foundry Foundation cf-release versions prior to v257; UAA release 2.x versions prior to... |
| CVE-2017-4971 | — | — | 15.9% | Jun 13, 2017 | An issue was discovered in Pivotal Spring Web Flow through 2.4.4. Applications that do not change the value of the MvcVi... |
| CVE-2017-4970 | — | — | 0.7% | Jun 13, 2017 | An issue was discovered in Cloud Foundry Foundation cf-release v255 and Staticfile buildpack versions v1.4.0 - v1.4.3. A... |
| CVE-2017-4967 | MEDIUM | 6.1 | 1.9% | Jun 13, 2017 | An issue was discovered in these Pivotal RabbitMQ versions: all 3.4.x versions, all 3.5.x versions, and 3.6.x versions p... |
| CVE-2017-4966 | HIGH | 7.8 | 0.4% | Jun 13, 2017 | An issue was discovered in these Pivotal RabbitMQ versions: all 3.4.x versions, all 3.5.x versions, and 3.6.x versions p... |
| CVE-2017-4965 | MEDIUM | 6.1 | 3.3% | Jun 13, 2017 | An issue was discovered in these Pivotal RabbitMQ versions: all 3.4.x versions, all 3.5.x versions, and 3.6.x versions p... |
| CVE-2017-4963 | — | — | 0.9% | Jun 13, 2017 | An issue was discovered in Cloud Foundry Foundation Cloud Foundry release v252 and earlier versions, UAA stand-alone rel... |
| CVE-2017-4961 | — | — | 0.5% | Jun 13, 2017 | An issue was discovered in Cloud Foundry Foundation BOSH Release 261.x versions prior to 261.3 and all 260.x versions. I... |
| CVE-2017-4959 | — | — | 1.3% | Jun 13, 2017 | An issue was discovered in Pivotal PCF Elastic Runtime 1.8.x versions prior to 1.8.29 and 1.9.x versions prior to 1.9.7.... |
| CVE-2017-4955 | — | — | 1.4% | Jun 13, 2017 | An issue was discovered in Pivotal PCF Elastic Runtime 1.6.x versions prior to 1.6.65, 1.7.x versions prior to 1.7.48, 1... |
| CVE-2017-2773 | — | — | 2.1% | Jun 13, 2017 | An issue was discovered in Pivotal PCF Elastic Runtime 1.6.x versions prior to 1.6.60, 1.7.x versions prior to 1.7.41, 1... |
| CVE-2017-1278 | — | — | 0.9% | Jun 12, 2017 | IBM DOORS Next Generation (DNG/RRC) 4.0, 5.0 and 6.0 is vulnerable to HTML injection. A remote attacker could inject mal... |
| CVE-2017-1276 | — | — | 0.7% | Jun 12, 2017 | IBM DOORS Next Generation (DNG/RRC) 4.0, 5.0 and 6.0 is vulnerable to cross-site scripting. This vulnerability allows us... |
| CVE-2017-1247 | — | — | 0.7% | Jun 12, 2017 | IBM DOORS Next Generation (DNG/RRC) 4.0, 5.0 and 6.0 is vulnerable to cross-site scripting. This vulnerability allows us... |
| CVE-2017-1214 | — | — | 1.3% | Jun 12, 2017 | IBM iNotes 8.5 and 9.0 could allow a remote attacker to send a malformed email to a victim, that when opened could cause... |
| CVE-2017-7667 | — | — | 1.4% | Jun 12, 2017 | Apache NiFi before 0.7.4 and 1.x before 1.3.0 need to establish the response header telling browsers to only allow frami... |
| CVE-2017-7665 | — | — | 3.5% | Jun 12, 2017 | In Apache NiFi before 0.7.4 and 1.x before 1.3.0, there are certain user input components in the UI which had been guard... |
| CVE-2017-6892 | — | — | 2.5% | Jun 12, 2017 | In libsndfile version 1.0.28, an error in the "aiff_read_chanmap()" function (aiff.c) can be exploited to cause an out-o... |
| CVE-2017-9557 | HIGH | 7.5 | 1.7% | Jun 12, 2017 | register.ghp in EFS Software Easy Chat Server versions 2.0 to 3.1 allows remote attackers to discover passwords by sendi... |
| CVE-2017-9418 | — | — | 2.4% | Jun 12, 2017 | SQL injection vulnerability in the WP-Testimonials plugin 3.4.1 for WordPress allows an authenticated user to execute ar... |
| CVE-2017-9548 | — | — | 0.8% | Jun 12, 2017 | admin.php in BigTree through 4.2.18 has a Cross-site Scripting (XSS) vulnerability, which allows remote authenticated us... |
| CVE-2017-9547 | — | — | 0.8% | Jun 12, 2017 | admin.php in BigTree through 4.2.18 has a Cross-site Scripting (XSS) vulnerability, which allows remote authenticated us... |
| CVE-2017-9546 | — | — | 1.1% | Jun 12, 2017 | admin.php in BigTree through 4.2.18 allows remote authenticated users to cause a denial of service (inability to save re... |
| CVE-2017-9544 | CRITICAL | 9.8 | 24.1% | Jun 12, 2017 | There is a remote stack-based buffer overflow (SEH) in register.ghp in EFS Software Easy Chat Server versions 2.0 to 3.1... |
| CVE-2017-9543 | HIGH | 7.5 | 1.3% | Jun 12, 2017 | register.ghp in EFS Software Easy Chat Server versions 2.0 to 3.1 allows remote attackers to reset arbitrary passwords v... |
Check if your code is affected by 2017 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now