2017 CVE Vulnerabilities

17,105 CVEs published in 2017.

CVE IDSeverityCVSSDescription
CVE-2017-1146IBM Content Navigator 2.0.3 and 3.0.0 are vulnerable to cross-site scripting. This vulnerability allows users to embed a...
CVE-2017-1145IBM WebSphere MQ 8.0.0.6 does not properly terminate channel agents when they are no longer needed, which could allow a ...
CVE-2017-1134IBM Reliable Scalable Cluster Technology could allow a local user to escalate their privileges to gain root access. IBM ...
CVE-2017-7187HIGH7.8The sg_ioctl function in drivers/scsi/sg.c in the Linux kernel through 4.10.4 allows local users to cause a denial of se...
CVE-2017-7186libpcre1 in PCRE 8.40 and libpcre2 in PCRE2 10.23 allow remote attackers to cause a denial of service (segmentation viol...
CVE-2017-5623An issue was discovered in OxygenOS before 4.1.0 on OnePlus 3 and 3T devices. The attacker can change the bootmode of th...
CVE-2017-7184HIGH7.8The xfrm_replay_verify_len function in net/xfrm/xfrm_user.c in the Linux kernel through 4.10.6 does not validate certain...
CVE-2017-7178HIGH8.8CSRF was discovered in the web UI in Deluge before 1.3.14. The exploitation methodology involves (1) hosting a crafted p...
CVE-2017-7177Suricata before 3.2.1 has an IPv4 defragmentation evasion issue caused by lack of a check for the IP protocol during fra...
CVE-2017-2656Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2016-6320. Reason: This candidate is a reservation ...
CVE-2017-7174The user-account creation feature in Chef Manage 2.1.0 through 2.4.4 allows remote attackers to execute arbitrary code. ...
CVE-2017-3881CRITICAL9.8A vulnerability in the Cisco Cluster Management Protocol (CMP) processing code in Cisco IOS and Cisco IOS XE Software co...
CVE-2017-3880An Authentication Bypass vulnerability in Cisco WebEx Meetings Server could allow an unauthenticated, remote attacker to...
CVE-2017-3879A Denial of Service vulnerability in the remote login functionality for Cisco NX-OS Software running on Cisco Nexus 9000...
CVE-2017-3878A Denial of Service vulnerability in the Telnet remote login functionality of Cisco NX-OS Software running on Cisco Nexu...
CVE-2017-3877A vulnerability in the web framework of Cisco Unified Communications Manager (CallManager) could allow an unauthenticate...
CVE-2017-3875An Access-Control Filtering Mechanisms Bypass vulnerability in certain access-control filtering mechanisms on Cisco Nexu...
CVE-2017-3874A vulnerability in the web framework of Cisco Unified Communications Manager (CallManager) could allow an authenticated,...
CVE-2017-3872A cross-site scripting (XSS) filter bypass vulnerability in the web-based management interface of Cisco Unified Communic...
CVE-2017-3871A RADIUS Secret Disclosure vulnerability in the web network management interface of Cisco Prime Optical for Service Prov...
CVE-2017-3870A vulnerability in the URL filtering feature of Cisco AsyncOS Software for Cisco Web Security Appliance (WSA) could allo...
CVE-2017-3869An API Credentials Management vulnerability in the APIs for Cisco Prime Infrastructure could allow an authenticated, rem...
CVE-2017-3868A vulnerability in the web-based management interface of Cisco UCS Director could allow an unauthenticated, remote attac...
CVE-2017-3867A vulnerability in the Border Gateway Protocol (BGP) Bidirectional Forwarding Detection (BFD) implementation of Cisco Ad...
CVE-2017-3866A vulnerability in the web framework code of Cisco Prime Service Catalog could allow an unauthenticated, remote attacker...

Check if your code is affected by 2017 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now