2017 CVE Vulnerabilities

17,105 CVEs published in 2017.

CVE IDSeverityCVSSDescription
CVE-2017-5155An issue was discovered in Schneider Electric Wonderware Historian 2014 R2 SP1 P01 and earlier. Wonderware Historian cre...
CVE-2017-5154An issue was discovered in Advantech WebAccess Version 8.1. To be able to exploit the SQL injection vulnerability, an at...
CVE-2017-5153An issue was discovered in OSIsoft PI Coresight 2016 R2 and earlier versions, and PI Web API 2016 R2 when deployed using...
CVE-2017-5152An issue was discovered in Advantech WebAccess Version 8.1. By accessing a specific uniform resource locator (URL) on th...
CVE-2017-5151HIGH7.3An issue was discovered in VideoInsight Web Client Version 6.3.5.11 and previous versions. A SQL Injection vulnerability...
CVE-2017-5146An issue was discovered in Carlo Gavazzi VMU-C EM prior to firmware Version A11_U05, and VMU-C PV prior to firmware Vers...
CVE-2017-5145An issue was discovered in Carlo Gavazzi VMU-C EM prior to firmware Version A11_U05, and VMU-C PV prior to firmware Vers...
CVE-2017-5144An issue was discovered in Carlo Gavazzi VMU-C EM prior to firmware Version A11_U05, and VMU-C PV prior to firmware Vers...
CVE-2017-5143An issue was discovered in Honeywell XL Web II controller XL1000C500 XLWebExe-2-01-00 and prior, and XLWeb 500 XLWebExe-...
CVE-2017-5142An issue was discovered in Honeywell XL Web II controller XL1000C500 XLWebExe-2-01-00 and prior, and XLWeb 500 XLWebExe-...
CVE-2017-5141An issue was discovered in Honeywell XL Web II controller XL1000C500 XLWebExe-2-01-00 and prior, and XLWeb 500 XLWebExe-...
CVE-2017-5140An issue was discovered in Honeywell XL Web II controller XL1000C500 XLWebExe-2-01-00 and prior, and XLWeb 500 XLWebExe-...
CVE-2017-5139An issue was discovered in Honeywell XL Web II controller XL1000C500 XLWebExe-2-01-00 and prior, and XLWeb 500 XLWebExe-...
CVE-2017-3902Cross-site scripting (XSS) vulnerability in the Web user interface (UI) in Intel Security ePO 5.1.3, 5.1.2, 5.1.1, and 5...
CVE-2017-3896Unvalidated parameter vulnerability in the remote log viewing capability in Intel Security McAfee Agent 5.0.x versions p...
CVE-2017-5964MEDIUM6.1An issue was discovered in Emoncms through 9.8.0. The vulnerability exists due to insufficient filtration of user-suppli...
CVE-2017-5963An issue was discovered in caddy (for TYPO3) before 7.2.10. The vulnerability exists due to insufficient filtration of u...
CVE-2017-5962An issue was discovered in contexts_wurfl (for TYPO3) before 0.4.2. The vulnerability exists due to insufficient filtrat...
CVE-2017-5961An issue was discovered in ionize through 1.0.8. The vulnerability exists due to insufficient filtration of user-supplie...
CVE-2017-5960An issue was discovered in Phalcon Eye through 0.4.1. The vulnerability exists due to insufficient filtration of user-su...
CVE-2017-3302Crash in libmysqlclient.so in Oracle MySQL before 5.6.21 and 5.7.x before 5.7.5 and MariaDB through 5.5.54, 10.0.x throu...
CVE-2017-5954An issue was discovered in the serialize-to-js package 0.5.0 for Node.js. Untrusted data passed into the deserialize() f...
CVE-2017-5953vim before patch 8.0.0322 does not properly validate values for tree length when handling a spell file, which may result...
CVE-2017-5945An issue was discovered in the PoodLL Filter plugin through 3.0.20 for Moodle. The vulnerability exists due to insuffici...
CVE-2017-5942MEDIUM6.1An issue was discovered in the WP Mail plugin before 1.2 for WordPress. The replyto parameter when composing a mail allo...

Check if your code is affected by 2017 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now