2017 CVE Vulnerabilities
17,105 CVEs published in 2017.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2017-7731 | — | — | 1.1% | May 27, 2017 | A weak password recovery vulnerability in Fortinet FortiPortal versions 4.0.0 and below allows attacker to carry out inf... |
| CVE-2017-7343 | — | — | 0.7% | May 27, 2017 | An open redirect vulnerability in Fortinet FortiPortal 4.0.0 and below allows attacker to execute unauthorized code or c... |
| CVE-2017-7339 | — | — | 0.7% | May 27, 2017 | A Cross-Site Scripting vulnerability in Fortinet FortiPortal versions 4.0.0 and below allows an attacker to execute unau... |
| CVE-2017-7338 | — | — | 1.2% | May 27, 2017 | A password management vulnerability in Fortinet FortiPortal versions 4.0.0 and below allows an attacker to carry out inf... |
| CVE-2017-7337 | — | — | 1.1% | May 27, 2017 | An improper Access Control vulnerability in Fortinet FortiPortal versions 4.0.0 and below allows an attacker to interact... |
| CVE-2017-3134 | — | — | 1.5% | May 27, 2017 | An escalation of privilege vulnerability in Fortinet FortiWLC-SD versions 8.2.4 and below allows attacker to gain root a... |
| CVE-2017-3129 | — | — | 0.7% | May 27, 2017 | A Cross-Site Scripting vulnerability in Fortinet FortiWeb versions 5.7.1 and below allows attacker to execute unauthoriz... |
| CVE-2017-3126 | — | — | 0.9% | May 27, 2017 | An Open Redirect vulnerability in Fortinet FortiAnalyzer 5.4.0 through 5.4.2 and FortiManager 5.4.0 through 5.4.2 allows... |
| CVE-2017-5646 | MEDIUM | 6.8 | 0.8% | May 26, 2017 | For versions of Apache Knox from 0.2.0 to 0.11.0 - an authenticated user may use a specially crafted URL to impersonate ... |
| CVE-2017-9021 | — | — | — | May 26, 2017 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2017-5937. Reason: This candidate is a reservation ... |
| CVE-2017-8542 | — | — | 6.0% | May 26, 2017 | The Microsoft Malware Protection Engine running on Microsoft Forefront and Microsoft Defender on Microsoft Windows Serve... |
| CVE-2017-8541 | — | — | 50.3% | May 26, 2017 | The Microsoft Malware Protection Engine running on Microsoft Forefront and Microsoft Defender on Microsoft Windows Serve... |
| CVE-2017-8540 | HIGH | 7.8 | 72.0% | May 26, 2017 | The Microsoft Malware Protection Engine running on Microsoft Forefront and Microsoft Defender on Microsoft Windows Serve... |
| CVE-2017-8539 | — | — | 6.0% | May 26, 2017 | The Microsoft Malware Protection Engine running on Microsoft Forefront and Microsoft Defender on Microsoft Windows Serve... |
| CVE-2017-8538 | — | — | 50.3% | May 26, 2017 | The Microsoft Malware Protection Engine running on Microsoft Forefront and Microsoft Defender on Microsoft Windows Serve... |
| CVE-2017-8537 | MEDIUM | 5.5 | 16.8% | May 26, 2017 | The Microsoft Malware Protection Engine running on Microsoft Forefront and Microsoft Defender on Microsoft Windows Serve... |
| CVE-2017-8536 | MEDIUM | 5.5 | 16.8% | May 26, 2017 | The Microsoft Malware Protection Engine running on Microsoft Forefront and Microsoft Defender on Microsoft Windows Serve... |
| CVE-2017-8535 | MEDIUM | 5.5 | 16.8% | May 26, 2017 | The Microsoft Malware Protection Engine running on Microsoft Forefront and Microsoft Defender on Microsoft Windows Serve... |
| CVE-2017-6862 | CRITICAL | 9.8 | 42.7% | May 26, 2017 | NETGEAR WNR2000v3 devices before 1.1.2.14, WNR2000v4 devices before 1.0.0.66, and WNR2000v5 devices before 1.0.0.42 allo... |
| CVE-2017-7505 | — | — | 1.6% | May 26, 2017 | Foreman since version 1.5 is vulnerable to an incorrect authorization check due to which users with user management perm... |
| CVE-2017-1325 | — | — | 0.8% | May 26, 2017 | IBM iNotes 8.5 and 9.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScr... |
| CVE-2017-1292 | — | — | 0.9% | May 26, 2017 | IBM Maximo Asset Management 7.5 and 7.6 generates error messages that could reveal sensitive information that could be u... |
| CVE-2017-1291 | — | — | 0.6% | May 26, 2017 | IBM Maximo Asset Management 7.5 and 7.6 is vulnerable to HTTP response splitting attacks. A remote attacker could exploi... |
| CVE-2017-9239 | — | — | 2.6% | May 26, 2017 | An issue was discovered in Exiv2 0.26. When the data structure of the structure ifd is incorrect, the program assigns pV... |
| CVE-2017-9037 | MEDIUM | 6.1 | 2.5% | May 26, 2017 | Multiple cross-site scripting (XSS) vulnerabilities in Trend Micro ServerProtect for Linux 3.0 before CP 1531 allow remo... |
Check if your code is affected by 2017 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now