2017 CVE Vulnerabilities
17,105 CVEs published in 2017.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2017-6561 | — | — | 0.8% | Mar 9, 2017 | XSS in Agora-Project 3.2.2 exists with an index.php?ctrl=object&action=[XSS] attack. |
| CVE-2017-6560 | — | — | 0.8% | Mar 9, 2017 | XSS in Agora-Project 3.2.2 exists with an index.php?ctrl=misc&action=[XSS]&editObjId=[XSS] attack. |
| CVE-2017-6559 | — | — | 0.8% | Mar 9, 2017 | XSS in Agora-Project 3.2.2 exists with an index.php?disconnect=1&msgNotif[]=[XSS] attack. |
| CVE-2017-6558 | — | — | 15.3% | Mar 9, 2017 | iball Baton 150M iB-WRA150N v1 00000001 1.2.6 build 110401 Rel.47776n devices are prone to an authentication bypass vuln... |
| CVE-2017-6556 | — | — | 0.6% | Mar 9, 2017 | Cross-site scripting (XSS) vulnerability in CMS Made Simple (CMSMS) 2.1.6 allows remote authenticated users to inject ar... |
| CVE-2017-6555 | — | — | 0.6% | Mar 9, 2017 | Cross-site scripting (XSS) vulnerability in /admin/moduleinterface.php in CMS Made Simple 2.1.6 allows remote authentica... |
| CVE-2017-6552 | — | — | 4.6% | Mar 9, 2017 | Livebox 3 Sagemcom SG30_sip-fr-5.15.8.1 devices have an insufficiently large default value for the maximum IPv6 routing ... |
| CVE-2017-6549 | — | — | 7.6% | Mar 9, 2017 | Session hijack vulnerability in httpd on ASUS RT-N56U, RT-N66U, RT-AC66U, RT-N66R, RT-AC66R, RT-AC68U, RT-AC68R, RT-N66W... |
| CVE-2017-6548 | — | — | 21.3% | Mar 9, 2017 | Buffer overflows in networkmap on ASUS RT-N56U, RT-N66U, RT-AC66U, RT-N66R, RT-AC66R, RT-AC68U, RT-AC68R, RT-N66W, RT-AC... |
| CVE-2017-6547 | — | — | 1.7% | Mar 9, 2017 | Cross-site scripting (XSS) vulnerability in httpd on ASUS RT-N56U, RT-N66U, RT-AC66U, RT-N66R, RT-AC66R, RT-AC68U, RT-AC... |
| CVE-2017-6544 | — | — | 0.7% | Mar 8, 2017 | Gargaj/wuhu through 2017-03-08 is vulnerable to a reflected XSS in wuhu-master/www_admin/users.php (id parameter). |
| CVE-2017-6543 | — | — | 0.8% | Mar 8, 2017 | Tenable Nessus before 6.10.2 (as used alone or in Tenable Appliance before 4.5.0) was found to contain a flaw that allow... |
| CVE-2017-1150 | — | — | 0.6% | Mar 8, 2017 | IBM DB2 for Linux, UNIX and Windows (includes DB2 Connect Server) 10.1, 10.5, and 11.1 could allow an authenticated atta... |
| CVE-2017-6541 | — | — | 0.8% | Mar 8, 2017 | Multiple Cross-Site Scripting (XSS) issues were discovered in webpagetest 3.0. The vulnerabilities exist due to insuffic... |
| CVE-2017-6540 | — | — | 0.6% | Mar 8, 2017 | Multiple Cross-Site Scripting (XSS) issues were discovered in webpagetest 3.0. The vulnerabilities exist due to insuffic... |
| CVE-2017-6539 | — | — | 0.6% | Mar 8, 2017 | Multiple Cross-Site Scripting (XSS) issues were discovered in webpagetest 3.0. The vulnerabilities exist due to insuffic... |
| CVE-2017-6538 | — | — | 0.6% | Mar 8, 2017 | A Cross-Site Scripting (XSS) issue was discovered in webpagetest 3.0. The vulnerability exists due to insufficient filtr... |
| CVE-2017-6537 | — | — | 0.8% | Mar 8, 2017 | A Cross-Site Scripting (XSS) issue was discovered in webpagetest 3.0. The vulnerability exists due to insufficient filtr... |
| CVE-2017-6536 | — | — | 0.6% | Mar 8, 2017 | Multiple Cross-Site Scripting (XSS) issues were discovered in webpagetest 3.0. The vulnerabilities exist due to insuffic... |
| CVE-2017-6535 | — | — | 0.6% | Mar 8, 2017 | Multiple Cross-Site Scripting (XSS) issues were discovered in webpagetest 3.0. The vulnerabilities exist due to insuffic... |
| CVE-2017-6534 | — | — | 0.6% | Mar 8, 2017 | A Cross-Site Scripting (XSS) issue was discovered in webpagetest 3.0. The vulnerability exists due to insufficient filtr... |
| CVE-2017-6533 | — | — | 0.7% | Mar 8, 2017 | A Cross-Site Scripting (XSS) issue was discovered in webpagetest 3.0. The vulnerability exists due to insufficient filtr... |
| CVE-2017-5178 | — | — | 13.6% | Mar 8, 2017 | An issue was discovered in Schneider Electric Tableau Server/Desktop Versions 7.0 to 10.1.3 in Wonderware Intelligence V... |
| CVE-2017-0537 | — | — | 1.0% | Mar 8, 2017 | An information disclosure vulnerability in the kernel USB gadget driver could enable a local malicious application to ac... |
| CVE-2017-0536 | — | — | 0.8% | Mar 8, 2017 | An information disclosure vulnerability in the Synaptics touchscreen driver could enable a local malicious application t... |
Check if your code is affected by 2017 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now