2017 CVE Vulnerabilities
17,105 CVEs published in 2017.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2017-8760 | — | — | 1.1% | May 5, 2017 | An issue was discovered on Accellion FTA devices before FTA_9_12_180. There is XSS in courier/1000@/index.html with the ... |
| CVE-2017-8304 | — | — | 0.7% | May 5, 2017 | An issue was discovered on Accellion FTA devices before FTA_9_12_180. courier/1000@/oauth/playground/callback.html allow... |
| CVE-2017-8303 | CRITICAL | 9.8 | 24.2% | May 5, 2017 | An issue was discovered on Accellion FTA devices before FTA_9_12_180. seos/1000/find.api allows Remote Code Execution wi... |
| CVE-2017-8080 | — | — | 2.6% | May 5, 2017 | Atlassian Hipchat Server before 2.2.4 allows remote authenticated users with user level privileges to execute arbitrary ... |
| CVE-2017-6557 | — | — | 1.1% | May 5, 2017 | SQL injection vulnerability in ArrayOS before AG 9.4.0.135, when the portal bookmark function is enabled, allows remote ... |
| CVE-2017-8787 | — | — | 1.6% | May 5, 2017 | The PoDoFo::PdfXRefStreamParserObject::ReadXRefStreamEntry function in base/PdfXRefStreamParserObject.cpp:224 in PoDoFo ... |
| CVE-2017-8060 | MEDIUM | 5.9 | 0.7% | May 5, 2017 | Acceptance of invalid/self-signed TLS certificates in "Panda Mobile Security" 1.1 for iOS allows a man-in-the-middle and... |
| CVE-2017-8059 | — | — | 0.5% | May 5, 2017 | Acceptance of invalid/self-signed TLS certificates in "Foxit PDF - PDF reader, editor, form, signature" before 5.4 for i... |
| CVE-2017-8058 | — | — | 0.6% | May 5, 2017 | Acceptance of invalid/self-signed TLS certificates in Atlassian HipChat before 3.16.2 for iOS allows a man-in-the-middle... |
| CVE-2017-5919 | — | — | 0.5% | May 5, 2017 | The 21st Century Insurance app 10.0.0 for iOS does not verify X.509 certificates from SSL servers, which allows man-in-t... |
| CVE-2017-5918 | — | — | 0.5% | May 5, 2017 | The Banco de Costa Rica BCR Movil app 3.7 for iOS does not verify X.509 certificates from SSL servers, which allows man-... |
| CVE-2017-5917 | — | — | — | May 5, 2017 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2017-3213. Reason: This candidate is a reservation... |
| CVE-2017-5916 | — | — | 0.5% | May 5, 2017 | The America's First Federal Credit Union (FCU) Mobile Banking app 3.1.0 for iOS does not verify X.509 certificates from ... |
| CVE-2017-5915 | — | — | 0.5% | May 5, 2017 | The Emirates NBD Bank P.J.S.C Emirates NBD KSA app 3.10.0 through 3.10.4 (UAE) and 2.0.1 through 2.1.0 (KSA) for iOS doe... |
| CVE-2017-5914 | MEDIUM | 5.9 | 0.6% | May 5, 2017 | The DOT IT Banque Zitouna app 2.1 for iOS does not verify X.509 certificates from SSL servers, which allows man-in-the-m... |
| CVE-2017-5913 | — | — | 0.5% | May 5, 2017 | The TradeKing Forex for iPhone app 1.2.1 for iOS does not verify X.509 certificates from SSL servers, which allows man-i... |
| CVE-2017-5912 | — | — | 0.5% | May 5, 2017 | The FOREX.com FOREXTrader for iPhone app 2.9.12 through 2.9.14 for iOS does not verify X.509 certificates from SSL serve... |
| CVE-2017-5911 | — | — | 0.5% | May 5, 2017 | The Banco Santander Mexico SA Supermovil app 3.5 through 3.7 for iOS does not verify X.509 certificates from SSL servers... |
| CVE-2017-5909 | — | — | 0.5% | May 5, 2017 | The Electronic Funds Source (EFS) Mobile Driver Source app 2.5 for iOS does not verify X.509 certificates from SSL serve... |
| CVE-2017-5908 | — | — | — | May 5, 2017 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2017-3212. Reason: This candidate is a reservation... |
| CVE-2017-5907 | — | — | 0.5% | May 5, 2017 | The Great Southern Bank Great Southern Mobile Banking app before 4.0.4 for iOS does not verify X.509 certificates from S... |
| CVE-2017-5906 | — | — | 0.5% | May 5, 2017 | The Everyday Health Diabetes in Check: Blood Glucose & Carb Tracker app 3.4.2 for iOS does not verify X.509 certificates... |
| CVE-2017-5905 | MEDIUM | 5.9 | 0.5% | May 5, 2017 | The Dollar Bank Mobile app 2.6.3 for iOS does not verify X.509 certificates from SSL servers, which allows man-in-the-mi... |
| CVE-2017-5902 | MEDIUM | 5.9 | 0.5% | May 5, 2017 | The PayQuicker app 1.0.0 for iOS does not verify X.509 certificates from SSL servers, which allows man-in-the-middle att... |
| CVE-2017-5901 | — | — | 0.5% | May 5, 2017 | The State Bank of India State Bank Anywhere app 5.1.0 for iOS does not verify X.509 certificates from SSL servers, which... |
Check if your code is affected by 2017 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now