2017 CVE Vulnerabilities
17,105 CVEs published in 2017.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2017-3244 | MEDIUM | 6.5 | 3.7% | Jan 27, 2017 | Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: DML). Supported versions that are aff... |
| CVE-2017-3243 | MEDIUM | 4.4 | 4.3% | Jan 27, 2017 | Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Charsets). Supported versions that ar... |
| CVE-2017-3242 | — | — | 0.4% | Jan 27, 2017 | Vulnerability in the Oracle VM Server for Sparc component of Oracle Sun Systems Products Suite (subcomponent: LDOM Manag... |
| CVE-2017-3241 | — | — | 32.8% | Jan 27, 2017 | Vulnerability in the Java SE, Java SE Embedded, JRockit component of Oracle Java SE (subcomponent: RMI). Supported versi... |
| CVE-2017-3240 | — | — | 0.4% | Jan 27, 2017 | Vulnerability in the RDBMS Security component of Oracle Database Server. The supported version that is affected is 12.1.... |
| CVE-2017-3239 | — | — | 0.4% | Jan 27, 2017 | Vulnerability in the Oracle GlassFish Server component of Oracle Fusion Middleware (subcomponent: Administration). Suppo... |
| CVE-2017-3238 | MEDIUM | 6.5 | 4.8% | Jan 27, 2017 | Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Optimizer). Supported versions that a... |
| CVE-2017-3236 | — | — | 1.5% | Jan 27, 2017 | Vulnerability in the Oracle FLEXCUBE Universal Banking component of Oracle Financial Services Applications (subcomponent... |
| CVE-2017-3235 | — | — | 0.4% | Jan 27, 2017 | Vulnerability in the Oracle FLEXCUBE Universal Banking component of Oracle Financial Services Applications (subcomponent... |
| CVE-2017-3231 | — | — | 2.2% | Jan 27, 2017 | Vulnerability in the Java SE, Java SE Embedded component of Oracle Java SE (subcomponent: Networking). Supported version... |
| CVE-2017-5599 | — | — | 0.7% | Jan 27, 2017 | An issue was discovered in eClinicalWorks Patient Portal 7.0 build 13. This is a reflected Cross Site Scripting vulnerab... |
| CVE-2017-5598 | — | — | 1.1% | Jan 27, 2017 | An issue was discovered in eClinicalWorks healow@work 8.0 build 8. This is a blind SQL injection within the EmployeePort... |
| CVE-2017-3805 | — | — | 1.6% | Jan 26, 2017 | A vulnerability in the web-based management interface of Cisco IOS and Cisco IOx Software could allow an unauthenticated... |
| CVE-2017-3804 | — | — | 0.5% | Jan 26, 2017 | A vulnerability in Intermediate System-to-Intermediate System (IS-IS) protocol packet processing of Cisco Nexus 5000, 60... |
| CVE-2017-3803 | — | — | 0.6% | Jan 26, 2017 | A vulnerability in the Cisco IOS Software forwarding queue of Cisco 2960X and 3750X switches could allow an unauthentica... |
| CVE-2017-3802 | — | — | 1.2% | Jan 26, 2017 | A vulnerability in Cisco Unified Communications Manager could allow an unauthenticated, remote attacker to conduct a cro... |
| CVE-2017-3800 | — | — | 1.5% | Jan 26, 2017 | A vulnerability in the content scanning engine of Cisco AsyncOS Software for Cisco Email Security Appliances (ESA) could... |
| CVE-2017-3799 | — | — | 1.0% | Jan 26, 2017 | A vulnerability in a URL parameter of Cisco WebEx Meeting Center could allow an unauthenticated, remote attacker to perf... |
| CVE-2017-3798 | — | — | 1.1% | Jan 26, 2017 | A cross-site scripting (XSS) filter bypass vulnerability in the web-based management interface of Cisco Unified Communic... |
| CVE-2017-3797 | — | — | 1.6% | Jan 26, 2017 | A vulnerability in Cisco WebEx Meetings Server could allow an unauthenticated, remote attacker to view the fully qualifi... |
| CVE-2017-3796 | — | — | 1.9% | Jan 26, 2017 | A vulnerability in Cisco WebEx Meetings Server could allow an authenticated, remote attacker to execute predetermined sh... |
| CVE-2017-3795 | — | — | 1.3% | Jan 26, 2017 | A vulnerability in Cisco WebEx Meetings Server could allow an authenticated, remote attacker to conduct arbitrary passwo... |
| CVE-2017-3794 | — | — | 1.1% | Jan 26, 2017 | A vulnerability in Cisco WebEx Meetings Server could allow an unauthenticated, remote attacker to conduct a cross-site r... |
| CVE-2017-5597 | — | — | 2.0% | Jan 25, 2017 | In Wireshark 2.2.0 to 2.2.3 and 2.0.0 to 2.0.9, the DHCPv6 dissector could go into a large loop, triggered by packet inj... |
| CVE-2017-5596 | — | — | 2.9% | Jan 25, 2017 | In Wireshark 2.2.0 to 2.2.3 and 2.0.0 to 2.0.9, the ASTERIX dissector could go into an infinite loop, triggered by packe... |
Check if your code is affected by 2017 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now