2017 CVE Vulnerabilities

17,105 CVEs published in 2017.

CVE IDSeverityCVSSDescription
CVE-2017-3232Vulnerability in the Automatic Service Request (ASR) component of Oracle Support Tools (subcomponent: ASR Manager). The ...
CVE-2017-3230Vulnerability in the Oracle Fusion Middleware MapViewer component of Oracle Fusion Middleware (subcomponent: Map Builder...
CVE-2017-8105FreeType 2 before 2017-03-24 has an out-of-bounds write caused by a heap-based buffer overflow related to the t1_decoder...
CVE-2017-8104In MyBB before 1.8.11, the smilie module allows Directory Traversal via the pathfolder parameter.
CVE-2017-8103In MyBB before 1.8.11, the Email MyCode component allows XSS, as demonstrated by an onmouseover event.
CVE-2017-8102Stored XSS in Serendipity v2.1-rc1 allows an attacker to steal an admin's cookie and other information by composing a ne...
CVE-2017-8101There is CSRF in Serendipity 2.0.5, allowing attackers to install any themes via a GET request.
CVE-2017-8100There is CSRF in the CopySafe Web Protection plugin before 2.6 for WordPress, allowing attackers to change plugin settin...
CVE-2017-8099There is CSRF in the WHIZZ plugin before 1.1.1 for WordPress, allowing attackers to delete any WordPress users and chang...
CVE-2017-8098e107 2.1.4 is vulnerable to cross-site request forgery in plugin-installing, meta-changing, and settings-changing. A mal...
CVE-2017-7723XSS exists in Easy WP SMTP (before 1.2.5), a WordPress Plugin, via the e-mail subject or body.
CVE-2017-5191An XSS vulnerability on the /NAGErrors URI in NetIQ Access Manager 4.2 and 4.3 exists because Access Gateway Error pages...
CVE-2017-2322A denial of service vulnerability in Juniper Networks NorthStar Controller Application prior to version 2.1.0 Service Pa...
CVE-2017-1000361DOMRpcImplementationNotAvailableException when sending Port-Status packets to OpenDaylight. Controller launches exceptio...
CVE-2017-1000360StreamCorruptedException and NullPointerException in OpenDaylight odl-mdsal-xsql. Controller launches exceptions in the ...
CVE-2017-1000359Java out of memory error and significant increase in resource consumption. Component: OpenDaylight odl-mdsal-xsql is vul...
CVE-2017-1000358Controller throws an exception and does not allow user to add subsequent flow for a particular switch. Component: OpenDa...
CVE-2017-1000357Denial of Service attack when the switch rejects to receive packets from the controller. Component: This vulnerability a...
CVE-2017-2340On Juniper Networks Junos OS 15.1 releases from 15.1R3 to 15.1R4, 16.1 prior to 16.1R3, on M/MX platforms where Enhanced...
CVE-2017-2334An information leak vulnerability in Juniper Networks NorthStar Controller Application prior to version 2.1.0 Service Pa...
CVE-2017-2333A persistent denial of service vulnerability in Juniper Networks NorthStar Controller Application prior to version 2.1.0...
CVE-2017-2332An insufficient authentication vulnerability in Juniper Networks NorthStar Controller Application prior to version 2.1.0...
CVE-2017-2331A firewall bypass vulnerability in Juniper Networks NorthStar Controller Application prior to version 2.1.0 Service Pack...
CVE-2017-2330A denial of service vulnerability in Juniper Networks NorthStar Controller Application prior to version 2.1.0 Service Pa...
CVE-2017-2329An insufficient authentication vulnerability in Juniper Networks NorthStar Controller Application prior to version 2.1.0...

Check if your code is affected by 2017 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now