2017 CVE Vulnerabilities
17,105 CVEs published in 2017.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2017-3232 | — | — | 0.4% | Apr 24, 2017 | Vulnerability in the Automatic Service Request (ASR) component of Oracle Support Tools (subcomponent: ASR Manager). The ... |
| CVE-2017-3230 | — | — | 2.0% | Apr 24, 2017 | Vulnerability in the Oracle Fusion Middleware MapViewer component of Oracle Fusion Middleware (subcomponent: Map Builder... |
| CVE-2017-8105 | — | — | 4.2% | Apr 24, 2017 | FreeType 2 before 2017-03-24 has an out-of-bounds write caused by a heap-based buffer overflow related to the t1_decoder... |
| CVE-2017-8104 | — | — | 2.5% | Apr 24, 2017 | In MyBB before 1.8.11, the smilie module allows Directory Traversal via the pathfolder parameter. |
| CVE-2017-8103 | — | — | 0.7% | Apr 24, 2017 | In MyBB before 1.8.11, the Email MyCode component allows XSS, as demonstrated by an onmouseover event. |
| CVE-2017-8102 | — | — | 0.9% | Apr 24, 2017 | Stored XSS in Serendipity v2.1-rc1 allows an attacker to steal an admin's cookie and other information by composing a ne... |
| CVE-2017-8101 | — | — | 0.6% | Apr 24, 2017 | There is CSRF in Serendipity 2.0.5, allowing attackers to install any themes via a GET request. |
| CVE-2017-8100 | — | — | 0.8% | Apr 24, 2017 | There is CSRF in the CopySafe Web Protection plugin before 2.6 for WordPress, allowing attackers to change plugin settin... |
| CVE-2017-8099 | — | — | 0.6% | Apr 24, 2017 | There is CSRF in the WHIZZ plugin before 1.1.1 for WordPress, allowing attackers to delete any WordPress users and chang... |
| CVE-2017-8098 | — | — | 0.7% | Apr 24, 2017 | e107 2.1.4 is vulnerable to cross-site request forgery in plugin-installing, meta-changing, and settings-changing. A mal... |
| CVE-2017-7723 | — | — | 0.8% | Apr 24, 2017 | XSS exists in Easy WP SMTP (before 1.2.5), a WordPress Plugin, via the e-mail subject or body. |
| CVE-2017-5191 | — | — | 0.7% | Apr 24, 2017 | An XSS vulnerability on the /NAGErrors URI in NetIQ Access Manager 4.2 and 4.3 exists because Access Gateway Error pages... |
| CVE-2017-2322 | — | — | 0.3% | Apr 24, 2017 | A denial of service vulnerability in Juniper Networks NorthStar Controller Application prior to version 2.1.0 Service Pa... |
| CVE-2017-1000361 | — | — | 1.4% | Apr 24, 2017 | DOMRpcImplementationNotAvailableException when sending Port-Status packets to OpenDaylight. Controller launches exceptio... |
| CVE-2017-1000360 | — | — | 1.3% | Apr 24, 2017 | StreamCorruptedException and NullPointerException in OpenDaylight odl-mdsal-xsql. Controller launches exceptions in the ... |
| CVE-2017-1000359 | — | — | 1.3% | Apr 24, 2017 | Java out of memory error and significant increase in resource consumption. Component: OpenDaylight odl-mdsal-xsql is vul... |
| CVE-2017-1000358 | — | — | 1.1% | Apr 24, 2017 | Controller throws an exception and does not allow user to add subsequent flow for a particular switch. Component: OpenDa... |
| CVE-2017-1000357 | — | — | 1.4% | Apr 24, 2017 | Denial of Service attack when the switch rejects to receive packets from the controller. Component: This vulnerability a... |
| CVE-2017-2340 | — | — | 2.2% | Apr 24, 2017 | On Juniper Networks Junos OS 15.1 releases from 15.1R3 to 15.1R4, 16.1 prior to 16.1R3, on M/MX platforms where Enhanced... |
| CVE-2017-2334 | — | — | 1.0% | Apr 24, 2017 | An information leak vulnerability in Juniper Networks NorthStar Controller Application prior to version 2.1.0 Service Pa... |
| CVE-2017-2333 | — | — | 1.1% | Apr 24, 2017 | A persistent denial of service vulnerability in Juniper Networks NorthStar Controller Application prior to version 2.1.0... |
| CVE-2017-2332 | — | — | 2.3% | Apr 24, 2017 | An insufficient authentication vulnerability in Juniper Networks NorthStar Controller Application prior to version 2.1.0... |
| CVE-2017-2331 | — | — | 1.1% | Apr 24, 2017 | A firewall bypass vulnerability in Juniper Networks NorthStar Controller Application prior to version 2.1.0 Service Pack... |
| CVE-2017-2330 | — | — | 0.3% | Apr 24, 2017 | A denial of service vulnerability in Juniper Networks NorthStar Controller Application prior to version 2.1.0 Service Pa... |
| CVE-2017-2329 | — | — | 0.4% | Apr 24, 2017 | An insufficient authentication vulnerability in Juniper Networks NorthStar Controller Application prior to version 2.1.0... |
Check if your code is affected by 2017 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now