2017 CVE Vulnerabilities
17,105 CVEs published in 2017.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2017-1146 | — | — | 0.5% | Mar 20, 2017 | IBM Content Navigator 2.0.3 and 3.0.0 are vulnerable to cross-site scripting. This vulnerability allows users to embed a... |
| CVE-2017-1145 | — | — | 1.9% | Mar 20, 2017 | IBM WebSphere MQ 8.0.0.6 does not properly terminate channel agents when they are no longer needed, which could allow a ... |
| CVE-2017-1134 | — | — | 0.3% | Mar 20, 2017 | IBM Reliable Scalable Cluster Technology could allow a local user to escalate their privileges to gain root access. IBM ... |
| CVE-2017-7187 | HIGH | 7.8 | 0.4% | Mar 20, 2017 | The sg_ioctl function in drivers/scsi/sg.c in the Linux kernel through 4.10.4 allows local users to cause a denial of se... |
| CVE-2017-7186 | — | — | 5.0% | Mar 20, 2017 | libpcre1 in PCRE 8.40 and libpcre2 in PCRE2 10.23 allow remote attackers to cause a denial of service (segmentation viol... |
| CVE-2017-5623 | — | — | 0.4% | Mar 19, 2017 | An issue was discovered in OxygenOS before 4.1.0 on OnePlus 3 and 3T devices. The attacker can change the bootmode of th... |
| CVE-2017-7184 | HIGH | 7.8 | 1.8% | Mar 19, 2017 | The xfrm_replay_verify_len function in net/xfrm/xfrm_user.c in the Linux kernel through 4.10.6 does not validate certain... |
| CVE-2017-7178 | HIGH | 8.8 | 4.0% | Mar 18, 2017 | CSRF was discovered in the web UI in Deluge before 1.3.14. The exploitation methodology involves (1) hosting a crafted p... |
| CVE-2017-7177 | — | — | 1.3% | Mar 18, 2017 | Suricata before 3.2.1 has an IPv4 defragmentation evasion issue caused by lack of a check for the IP protocol during fra... |
| CVE-2017-2656 | — | — | — | Mar 18, 2017 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2016-6320. Reason: This candidate is a reservation ... |
| CVE-2017-7174 | — | — | 2.4% | Mar 17, 2017 | The user-account creation feature in Chef Manage 2.1.0 through 2.4.4 allows remote attackers to execute arbitrary code. ... |
| CVE-2017-3881 | CRITICAL | 9.8 | 99.0% | Mar 17, 2017 | A vulnerability in the Cisco Cluster Management Protocol (CMP) processing code in Cisco IOS and Cisco IOS XE Software co... |
| CVE-2017-3880 | — | — | 1.5% | Mar 17, 2017 | An Authentication Bypass vulnerability in Cisco WebEx Meetings Server could allow an unauthenticated, remote attacker to... |
| CVE-2017-3879 | — | — | 2.0% | Mar 17, 2017 | A Denial of Service vulnerability in the remote login functionality for Cisco NX-OS Software running on Cisco Nexus 9000... |
| CVE-2017-3878 | — | — | 2.0% | Mar 17, 2017 | A Denial of Service vulnerability in the Telnet remote login functionality of Cisco NX-OS Software running on Cisco Nexu... |
| CVE-2017-3877 | — | — | 0.8% | Mar 17, 2017 | A vulnerability in the web framework of Cisco Unified Communications Manager (CallManager) could allow an unauthenticate... |
| CVE-2017-3875 | — | — | 1.5% | Mar 17, 2017 | An Access-Control Filtering Mechanisms Bypass vulnerability in certain access-control filtering mechanisms on Cisco Nexu... |
| CVE-2017-3874 | — | — | 0.9% | Mar 17, 2017 | A vulnerability in the web framework of Cisco Unified Communications Manager (CallManager) could allow an authenticated,... |
| CVE-2017-3872 | — | — | 1.3% | Mar 17, 2017 | A cross-site scripting (XSS) filter bypass vulnerability in the web-based management interface of Cisco Unified Communic... |
| CVE-2017-3871 | — | — | 0.9% | Mar 17, 2017 | A RADIUS Secret Disclosure vulnerability in the web network management interface of Cisco Prime Optical for Service Prov... |
| CVE-2017-3870 | — | — | 1.5% | Mar 17, 2017 | A vulnerability in the URL filtering feature of Cisco AsyncOS Software for Cisco Web Security Appliance (WSA) could allo... |
| CVE-2017-3869 | — | — | 1.0% | Mar 17, 2017 | An API Credentials Management vulnerability in the APIs for Cisco Prime Infrastructure could allow an authenticated, rem... |
| CVE-2017-3868 | — | — | 1.2% | Mar 17, 2017 | A vulnerability in the web-based management interface of Cisco UCS Director could allow an unauthenticated, remote attac... |
| CVE-2017-3867 | — | — | 1.4% | Mar 17, 2017 | A vulnerability in the Border Gateway Protocol (BGP) Bidirectional Forwarding Detection (BFD) implementation of Cisco Ad... |
| CVE-2017-3866 | — | — | 1.2% | Mar 17, 2017 | A vulnerability in the web framework code of Cisco Prime Service Catalog could allow an unauthenticated, remote attacker... |
Check if your code is affected by 2017 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now